How to remove YDPoNkRGP4bbVMHzZT2MBXbC.exe
            
        
    
    
    
    
    
        
            
                
                    
                    - File Details
- Overview
- Analysis
 
            
                YDPoNkRGP4bbVMHzZT2MBXbC.exe
                
                The module YDPoNkRGP4bbVMHzZT2MBXbC.exe has been detected as Ransom.Sabsik
                
                
                
                
                File Details
                
                
                    
                        
                            
                            
                        
                        
                        
                            | Product Name: |  | 
                        
                        
                        
                            | Company Name: |  | 
                        
                        
                            | MD5: | 21ce9f8b4c74408b75ba381853a03746 | 
                        
                        
                        
                            | Size: | 4 MB | 
                        
                        
                            | First Published: | 2021-12-23 21:25:07 (3 years ago) | 
                        
                            | Latest Published: | 2021-12-23 21:25:07 (3 years ago) | 
                    
                 
                
                
                    
                        
                            
                            
                        
                        
                            | Status: | Ransom.Sabsik (on last analysis) |  | 
                        
                            | Analysis Date: | 2021-12-23 21:25:07 (3 years ago) | 
                    
                 
                
                
                
                
                    
                        
                        
                            
                                | %sysdrive%\system volume information\systemrestore\frstaging\users\supyiya\pictures | 
                        
                    
                 
                
                
                
                
                
                
                
                
                
                
                
                
                
                
                
                Analysis
                
                
                
                    
                        
                            
                            
                        
                        
                        
                            | Subsystem: | Windows GUI | 
                        
                            | PE Type: | pe | 
                        
                            | OS Bitness: | 32 | 
                        
                        
                            | Image Base: | 0x00400000 | 
                        
                            | Entry Address: | 0x00001000 | 
                    
                 
                
                
                
                
                
                    
                        
                            
                            
                            
                        
                        
                            | Name | Size of data | MD5 | 
                        
                        
                            |  | 70656 | 4983f5d4210447d500c4cff9c72133b5 | 
                        
                        
                            |  | 2048 | 10834b9c0f27928bef2087a8d94e1253 | 
                        
                        
                            |  | 30720 | 2e13af7fa49f53a4c274027a7e2c416e | 
                        
                        
                            |  | 1024 | 51d468197b5a55824a7f98ac576ad649 | 
                        
                        
                            |  | 2275840 | 2b9d6f0b3ffbf92acf8ed0b417ae22ba | 
                        
                        
                            |  | 1725440 | 30f6fa170ffe883e8c594f8d79a51678 | 
                        
                        
                            | .rsrc | 1536 | a9848fe050dc5ab9a00e85f41c144eed | 
                        
                        
                            | .OWPFnlL | 305664 | ad35eee6532d30a40b5bf8a01e1d2fbf | 
                        
                        
                            | .adata | 0 | d41d8cd98f00b204e9800998ecf8427e |