How to remove loader.exe

loader.exe

The module loader.exe has been detected as Ransom.Sabsik

loader.exe
Product Name:

Wondershare MagicXE

Company Name:

WonderShare Limited

MD5: 430a004b31279218ef515045ae189418
Size: 6 MB
First Published: 2024-09-15 23:01:46 (8 months ago)
Latest Published: 2024-11-13 23:01:43 (6 months ago)
Status: Ransom.Sabsik (on last analysis)
Analysis Date: 2024-11-13 23:01:43 (6 months ago)
%appdata%
%appdata%
50.0%
50.0%
Windows 10 100.0%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x0083f241

PE Sections:

Name Size of data MD5
.text 0 d41d8cd98f00b204e9800998ecf8427e
.rdata 0 d41d8cd98f00b204e9800998ecf8427e
.data 0 d41d8cd98f00b204e9800998ecf8427e
.xyz0 0 d41d8cd98f00b204e9800998ecf8427e
.xyz1 1024 5fdf107f94241ad88f7d54c2f79a14da
.xyz2 6397952 972f59bf2a359aa67ddee630dc97a4fa
.reloc 1536 7666382b951555dea80c98b07a003070
.rsrc 412672 653e4ceac5b8bfe745fcad29d0b726bd

More information:

Download GridinSoft Anti-Malware - Removal tool for loader.exe