How to remove 61d6ff41e457d_Thu144da4f02.exe
- File Details
- Overview
- Analysis
61d6ff41e457d_Thu144da4f02.exe
The module 61d6ff41e457d_Thu144da4f02.exe has been detected as Ransom.Sabsik
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
08f817588ebd16413a5081bfd5628f16 |
| Size: |
47 KB |
| First Published: |
2022-01-06 21:25:45 (4 years ago) |
| Latest Published: |
2022-01-10 21:28:23 (4 years ago) |
| Status: |
Ransom.Sabsik (on last analysis) |
|
| Analysis Date: |
2022-01-10 21:28:23 (4 years ago) |
Overview
| Signed By: |
Exodus Movement Inc |
| Status: |
Invalid (digital signature could be stolen or file could be patched) |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x00007a5e |
| MVID: |
4494cc27-8ac1-4b78-6f91-095ebf9155d8 |
| Typelib ID: |
e9b08e4d-3a7d-4688-8450-648e24ac8c4f |
| Name |
Size of data |
MD5 |
| .text |
23552 |
1790fd6585f97f9e087c580b216a4784 |
| .rsrc |
19456 |
e603e3ab4413cc1a8b30d781204050eb |
| .reloc |
512 |
0900d32c6158ee3cec5846a5a0b9ec05 |