How to remove $RVZ7Y4Y.exe
- File Details
- Overview
- Analysis
$RVZ7Y4Y.exe
The module $RVZ7Y4Y.exe has been detected as Ransom.Sabsik
File Details
Product Name: |
|
Company Name: |
|
MD5: |
63668401a2060becb1b30dd29a3e5902 |
Size: |
2 MB |
First Published: |
2021-11-01 21:55:24 (3 years ago) |
Latest Published: |
2021-11-01 21:55:24 (3 years ago) |
Status: |
Ransom.Sabsik (on last analysis) |
|
Analysis Date: |
2021-11-01 21:55:24 (3 years ago) |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00412c60 |
Name |
Size of data |
MD5 |
|
101888 |
54a8e2007dfb0f134af6b637c3663506 |
?-xZNxM7 |
348160 |
5d728d04d55d52406d382578c221f9e6 |
|
512 |
a8c74d635555bfe219f18a52150f8630 |
.idata |
512 |
c320f0e8f2ee037689b1f85f0071f560 |
.themida |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.boot |
2229760 |
cfd0f734d93fc2f6ee33174cad797292 |
?-xZNxM7 |
3584 |
7299e2d97b1c6bbc3554f4c70294111e |
.rsrc |
388096 |
b3f1079d487c5527acec4ef59ace74b6 |