How to remove $RVZ7Y4Y.exe
- File Details
- Overview
- Analysis
$RVZ7Y4Y.exe
The module $RVZ7Y4Y.exe has been detected as Ransom.Sabsik
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
63668401a2060becb1b30dd29a3e5902 |
| Size: |
2 MB |
| First Published: |
2021-11-01 21:55:24 (4 years ago) |
| Latest Published: |
2021-11-01 21:55:24 (4 years ago) |
| Status: |
Ransom.Sabsik (on last analysis) |
|
| Analysis Date: |
2021-11-01 21:55:24 (4 years ago) |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x00412c60 |
| Name |
Size of data |
MD5 |
| |
101888 |
54a8e2007dfb0f134af6b637c3663506 |
| ?-xZNxM7 |
348160 |
5d728d04d55d52406d382578c221f9e6 |
| |
512 |
a8c74d635555bfe219f18a52150f8630 |
| .idata |
512 |
c320f0e8f2ee037689b1f85f0071f560 |
| .themida |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .boot |
2229760 |
cfd0f734d93fc2f6ee33174cad797292 |
| ?-xZNxM7 |
3584 |
7299e2d97b1c6bbc3554f4c70294111e |
| .rsrc |
388096 |
b3f1079d487c5527acec4ef59ace74b6 |