How to remove 1914757.exe
- File Details
- Overview
- Analysis
1914757.exe
The module 1914757.exe has been detected as Ransom.Sabsik
File Details
Product Name: |
|
Company Name: |
|
MD5: |
e3d293ae6241383c478054bc4cf22283 |
Size: |
4 MB |
First Published: |
2021-11-21 21:34:35 (3 years ago) |
Latest Published: |
2021-12-14 21:34:09 (3 years ago) |
Status: |
Ransom.Sabsik (on last analysis) |
|
Analysis Date: |
2021-12-14 21:34:09 (3 years ago) |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00025000 |
Name |
Size of data |
MD5 |
|
0 |
d41d8cd98f00b204e9800998ecf8427e |
|
0 |
d41d8cd98f00b204e9800998ecf8427e |
|
31232 |
7910413e0dd8dbc568ea90452c0134f8 |
|
1024 |
f6f984d9bc5a599bac035eb07d1e8426 |
|
0 |
d41d8cd98f00b204e9800998ecf8427e |
|
4064768 |
445b3c1c63be36ae1009fde30189e3f2 |
.rsrc |
1536 |
2961ed1f4a40e9db76eb9ab15b237a6a |
.IXEgYsY |
305664 |
4a8a9e52f084465266a988a37b08073c |
.adata |
0 |
d41d8cd98f00b204e9800998ecf8427e |