How to remove 4078200.exe
- File Details
- Overview
- Analysis
4078200.exe
The module 4078200.exe has been detected as Trojan.Sabsik
File Details
Product Name: |
|
Company Name: |
|
MD5: |
afdd7564c2631bc78fb98a17ae4e1532 |
Size: |
2 MB |
First Published: |
2021-09-17 20:32:54 (3 years ago) |
Latest Published: |
2021-09-17 20:35:43 (3 years ago) |
Status: |
Trojan.Sabsik (on last analysis) |
|
Analysis Date: |
2021-09-17 20:35:43 (3 years ago) |
Overview
Signed By: |
Corel Corporation |
Status: |
Invalid (digital signature could be stolen or file could be patched) |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%appdata% |
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x004fed68 |
Name |
Size of data |
MD5 |
|
84992 |
a1e598f5f573a8b16a61c63e0c0ed6b2 |
|
2048 |
e5f668cd1e1f6e69b87f9abf95a41337 |
Nikon 85 |
71680 |
e56463bf5a92ed7d62e861aec77ef269 |
|
512 |
135b1eb7aa83524a4f8a18d6bec5e2f0 |
.idata |
512 |
f423a5677f293093223692525921521c |
.themida |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.boot |
2034688 |
87f6818f0947815fb005f677b9e57981 |
.rsrc |
71680 |
033808096245c00f7d7e4c3913529f6e |