How to remove autoup[1].exe
- File Details
- Overview
- Analysis
autoup[1].exe
The module autoup[1].exe has been detected as Ransom.Sabsik
File Details
Product Name: |
|
Company Name: |
|
MD5: |
b20c7c11df0694a9cfac349d7145cfc3 |
Size: |
4 MB |
First Published: |
2023-07-31 23:07:22 (2 years ago) |
Latest Published: |
2023-11-09 23:57:32 (2 years ago) |
Status: |
Ransom.Sabsik (on last analysis) |
|
Analysis Date: |
2023-11-09 23:57:32 (2 years ago) |
%sysdrive%\windows.old\users\joaon\appdata\local\microsoft\windows\inetcache\ie |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000000400000 |
Entry Address: |
0x009bb085 |
Name |
Size of data |
MD5 |
.MPRESS1 |
4144640 |
d160f3735a7417a04a91e70e0544c582 |
.MPRESS2 |
3072 |
caf47b433b6a786b6133d0554b94ce19 |
.rsrc |
94208 |
a81de0db44ca63e17078b2c1aadcd6c5 |