How to remove YDPoNkRGP4bbVMHzZT2MBXbC.exe
- File Details
- Overview
- Analysis
YDPoNkRGP4bbVMHzZT2MBXbC.exe
The module YDPoNkRGP4bbVMHzZT2MBXbC.exe has been detected as Ransom.Sabsik
File Details
Product Name: |
|
Company Name: |
|
MD5: |
21ce9f8b4c74408b75ba381853a03746 |
Size: |
4 MB |
First Published: |
2021-12-23 21:25:07 (3 years ago) |
Latest Published: |
2021-12-23 21:25:07 (3 years ago) |
Status: |
Ransom.Sabsik (on last analysis) |
|
Analysis Date: |
2021-12-23 21:25:07 (3 years ago) |
%sysdrive%\system volume information\systemrestore\frstaging\users\supyiya\pictures |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00001000 |
Name |
Size of data |
MD5 |
|
70656 |
4983f5d4210447d500c4cff9c72133b5 |
|
2048 |
10834b9c0f27928bef2087a8d94e1253 |
|
30720 |
2e13af7fa49f53a4c274027a7e2c416e |
|
1024 |
51d468197b5a55824a7f98ac576ad649 |
|
2275840 |
2b9d6f0b3ffbf92acf8ed0b417ae22ba |
|
1725440 |
30f6fa170ffe883e8c594f8d79a51678 |
.rsrc |
1536 |
a9848fe050dc5ab9a00e85f41c144eed |
.OWPFnlL |
305664 |
ad35eee6532d30a40b5bf8a01e1d2fbf |
.adata |
0 |
d41d8cd98f00b204e9800998ecf8427e |