How to remove 3WQ53N1B4AIM37CC.exe
- File Details
- Overview
- Analysis
3WQ53N1B4AIM37CC.exe
The module 3WQ53N1B4AIM37CC.exe has been detected as Ransom.Sabsik
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
9097086a618c5e822fb63456873e763d |
| Size: |
4 MB |
| First Published: |
2024-01-06 23:30:27 (2 years ago) |
| Latest Published: |
2024-01-06 23:33:48 (2 years ago) |
| Status: |
Ransom.Sabsik (on last analysis) |
|
| Analysis Date: |
2024-01-06 23:33:48 (2 years ago) |
Overview
| %temp% |
| %temp% |
| %temp%\4fdb51ccdc |
| %temp% |
| %temp% |
| %temp% |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x007fda90 |
| Name |
Size of data |
MD5 |
| |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .idata |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .tls |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .vmp°>ï |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .themida |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .boot |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .vmp°>ï |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .vmp°>ï |
512 |
7d5a1bceb4a75039608f36ccef4c288b |
| .vmp°>ï |
4898816 |
eb31ee57cbe8146913cded378318b8d1 |
| .reloc |
7168 |
d4faf445a6bbe55bb49030b03c1e77f8 |
| .rsrc |
14848 |
2414dec6f6a093c3f9919d729cb59d22 |