How to remove Install.exe
- File Details
- Overview
- Analysis
Install.exe
The module Install.exe has been detected as Ransom.Sabsik
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
10a2261d35f956c5138cbc149de1c8c5 |
| Size: |
4 MB |
| First Published: |
2023-01-06 23:34:58 (2 years ago) |
| Latest Published: |
2023-01-06 23:34:58 (2 years ago) |
| Status: |
Ransom.Sabsik (on last analysis) |
|
| Analysis Date: |
2023-01-06 23:34:58 (2 years ago) |
Overview
| %sysdrive%\$recycle.bin\s-1-5-21-751109598-2440040167-4191309754-1001 |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x007b2056 |
| Name |
Size of data |
MD5 |
| .text |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .rdata |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .data |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .vmp0 |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .vmp1 |
4151808 |
4cb6761db319e2bb76c85f34f7f7868a |
| .reloc |
1536 |
68d19b417e214ed227a4aadf38b40189 |
| .rsrc |
115200 |
56acfe0d4528b67d9dc769de019b88ef |