How to remove QczZRZGIBxBxWBOCMRVplK0s.exe
- File Details
- Overview
- Analysis
QczZRZGIBxBxWBOCMRVplK0s.exe
The module QczZRZGIBxBxWBOCMRVplK0s.exe has been detected as Ransom.Sabsik
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
0280313f1615b19671760a7973462afa |
| Size: |
3 MB |
| First Published: |
2024-02-14 23:28:28 (2 years ago) |
| Latest Published: |
2024-02-14 23:28:28 (2 years ago) |
| Status: |
Ransom.Sabsik (on last analysis) |
|
| Analysis Date: |
2024-02-14 23:28:28 (2 years ago) |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x005dfa20 |
| Name |
Size of data |
MD5 |
| |
84992 |
5721144392c6f702894ca7c3dee3fdc5 |
| |
120832 |
6e6ab298be7a9687f069b6e07a119f02 |
| |
512 |
9f81abae6ae284c68a7ed18af4cd06fa |
| .idata |
512 |
e26f8b331243038cda7507c093d7348f |
| .rsrc |
3584 |
20f2359c0bda34544ad556ffabc9220b |
| .themida |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .boot |
2987008 |
995b2a1ce08ec2faedfe4255f8c5ca8a |