How to remove DfkIO7sI7kFBKK04gsVMDowC.exe
- File Details
- Overview
- Analysis
DfkIO7sI7kFBKK04gsVMDowC.exe
The module DfkIO7sI7kFBKK04gsVMDowC.exe has been detected as Ransom.Sabsik
File Details
| Product Name: |
|
| MD5: |
af5c6ff34ef855330a30250b8cbce229 |
| Size: |
335 KB |
| First Published: |
2024-05-04 23:01:43 (2 years ago) |
| Latest Published: |
2024-06-14 23:01:38 (a year ago) |
| Status: |
Ransom.Sabsik (on last analysis) |
|
| Analysis Date: |
2024-06-14 23:01:38 (a year ago) |
| %profile% |
| %localappdata% |
| %profile% |
| %profile% |
| %profile% |
| %localappdata% |
| %localappdata% |
| %localappdata% |
| %localappdata% |
| %profile% |
| Windows 8 |
50.0% |
|
| Windows 10 |
50.0% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x00003b0b |
| Name |
Size of data |
MD5 |
| .text |
59904 |
e22df1ea41636c0919e9ad5708bae496 |
| .rdata |
28160 |
32d08de410b46f098d3d828fdd6fd6ee |
| .data |
93184 |
09d5ebf2a8c0b385eaa88ed30252accc |
| .rsrc |
161280 |
39bb4c7b222d9394fd1f3f8a8767aa08 |