How to remove 8557.exe
8557.exe
The module 8557.exe has been detected as Ransom.Sabsik
File Details
| Product Name: | sdofjgnsfdi |
| MD5: | 5fbce35b8e311f19ea9255deba45376b |
| Size: | 321 KB |
| First Published: | 2023-01-29 23:29:25 (2 years ago) |
| Latest Published: | 2023-02-01 23:59:35 (2 years ago) |
| Status: | Ransom.Sabsik (on last analysis) | |
| Analysis Date: | 2023-02-01 23:59:35 (2 years ago) |
Common Places:
| %temp% |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
| %sysdrive%\windows.old\users\danie\appdata\local |
Geography:
| 36.4% | ||
| 27.3% | ||
| 27.3% | ||
| 9.1% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x00004e9b |
PE Sections:
| Name | Size of data | MD5 |
| .text | 69120 | 8bca1469ec1d1b07fbaa557d6c2751a9 |
| .data | 93696 | f7dd133b0fbc50ffbcf77e9e3b91f4ad |
| .hukuziv | 1024 | 0f343b0931126a20f133d67c2b018a3b |
| .gafinum | 1024 | 0f343b0931126a20f133d67c2b018a3b |
| .nudu | 1024 | 0f343b0931126a20f133d67c2b018a3b |
| .rsrc | 155136 | 697c2372e970bac0cd7621a4d0f195e9 |
| .reloc | 6656 | e04134edb75c02d512239aec38444fce |
More information:
Download GridinSoft
Anti-Malware - Removal tool for 8557.exe