How to remove 8636497.exe
- File Details
- Overview
- Analysis
8636497.exe
The module 8636497.exe has been detected as Ransom.Sabsik
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
347d8e2d19eef7fef12b7a74ff3fbec1 |
| Size: |
3 MB |
| First Published: |
2021-11-08 21:23:38 (4 years ago) |
| Latest Published: |
2021-11-08 21:23:38 (4 years ago) |
| Status: |
Ransom.Sabsik (on last analysis) |
|
| Analysis Date: |
2021-11-08 21:23:38 (4 years ago) |
Overview
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x00501de0 |
| Name |
Size of data |
MD5 |
| |
103936 |
3d433fd68fb6736373ce07ca100f19b0 |
| |
17920 |
e31ad8f62f40541bf25fcbe80e40f530 |
| |
512 |
fcd6a224bc8a3321c251fbeb1c007a90 |
| .idata |
512 |
df6e2b0aff55dc9f8eaa08bc2db11aca |
| Q*jr%Lr8 |
2048 |
cc5cf6cc23522138e7edb1023faab09a |
| .themida |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .boot |
3187200 |
bd38f13072d99cd901e4b11750f9d125 |
| Q*jr%Lr8 |
3584 |
d04ce3a87bcad9b5b0d961fb0aa8d130 |
| Q*jr%Lr8 |
3584 |
ca3bb450f280e6f70544d5d99e16d865 |
| .rsrc |
388096 |
6448208f682dac4d8181c9b273bdd2c0 |