How to remove 563A.exe

563A.exe

The module 563A.exe has been detected as Ransom.Sabsik

563A.exe
Product Name:

Binance

Company Name:

BinanceTech

MD5: a16c251f7ed0c6ebad868c1b3ffc2128
Size: 688 KB
First Published: 2022-04-15 23:11:44 (3 years ago)
Latest Published: 2022-04-15 23:11:44 (3 years ago)
Status: Ransom.Sabsik (on last analysis)
Analysis Date: 2022-04-15 23:11:44 (3 years ago)
%temp%
100.0%
Windows 7 100.0%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00067860

PE Sections:

Name Size of data MD5
.text 406528 eea34b1c2c807b3cd80c2b81ea672aea
.itext 10752 0b8687d3ed2a21e4e856995e88aa3ac7
.data 7680 21a5421b63dfb977dc47ce3b4f8f8d09
.bss 0 d41d8cd98f00b204e9800998ecf8427e
.idata 10752 8dd7af66b186c1edd414ce97308489df
.tls 0 d41d8cd98f00b204e9800998ecf8427e
.rdata 512 5f8a5bf8d1a9a944465bcf7db1405f93
.reloc 29696 b653ff2e30362f091398fdb6c60a8b3d
.rsrc 238080 35a1a4ff3583151b963f43a79862e83b

More information:

Download GridinSoft Anti-Malware - Removal tool for 563A.exe