How to remove EClEYHwviuDWEC9z8Uo2WLc5.exe
- File Details
- Overview
- Analysis
EClEYHwviuDWEC9z8Uo2WLc5.exe
The module EClEYHwviuDWEC9z8Uo2WLc5.exe has been detected as Ransom.Sabsik
File Details
Product Name: |
|
Company Name: |
|
MD5: |
c90d43dd1011de8a6ecf8197e2e3101b |
Size: |
2 MB |
First Published: |
2021-10-31 21:20:15 (3 years ago) |
Latest Published: |
2021-10-31 21:26:31 (3 years ago) |
Status: |
Ransom.Sabsik (on last analysis) |
|
Analysis Date: |
2021-10-31 21:26:31 (3 years ago) |
%sysdrive%\sistema\imagenes |
%sysdrive%\sistema\imagenes |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x003e1028 |
Name |
Size of data |
MD5 |
|
102912 |
156082101ab5f9edde442dd20a3d1f0b |
xZNxM7F* |
348160 |
2a5ed6da9c457b8b1af91b9a7c44302a |
|
512 |
ae37122e3dde5b8aa130d9b6908648d3 |
.idata |
512 |
c320f0e8f2ee037689b1f85f0071f560 |
.themida |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.boot |
2112000 |
39826b129c5515840cdc9a9864577c49 |
xZNxM7F* |
3584 |
910c1dcd9f976c17389ccf5164945c5e |
.rsrc |
388096 |
613354cc46835d9351f1bbdc963991ad |