How to remove qG9bkB8P.exe
- File Details
- Overview
- Analysis
qG9bkB8P.exe
The module qG9bkB8P.exe has been detected as Ransom.Sabsik
File Details
Product Name: |
|
Company Name: |
|
MD5: |
fd59bd3d4746805751cfe6a936dd2845 |
Size: |
9 MB |
First Published: |
2023-09-05 23:02:39 (a year ago) |
Latest Published: |
2023-09-05 23:02:39 (a year ago) |
Status: |
Ransom.Sabsik (on last analysis) |
|
Analysis Date: |
2023-09-05 23:02:39 (a year ago) |
Overview
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000000400000 |
Entry Address: |
0x011232b8 |
Name |
Size of data |
MD5 |
|
2311680 |
6b0e0a7071991f0bd0449cfda017d2e5 |
|
106496 |
0eecd93f6fb590a25af6c945981a4a17 |
|
3276288 |
6f078d33ff39341afad65c6e39c60f4c |
|
14848 |
a8e3b1c8464e87fa1ddd54dcac6f6d96 |
|
5120 |
8e9f9b09d90cec533cd61facccba341e |
.bss |
0 |
d41d8cd98f00b204e9800998ecf8427e |
|
512 |
399e2ffe7411cb5de5d931b17f265455 |
|
512 |
b688697310e98956d37864e3094d926d |
|
512 |
7cd02332cf08ad51776807381e899c1b |
|
512 |
0d7175e3cfaba316d5d897e0fab53ba2 |
|
22016 |
53d97de8f1a638e7c4157e3bbebee48d |
|
1192960 |
cb3134b959fa99c5a5bd9f044e6a5f97 |
.edata |
512 |
4e4fa5640d9208d86865ff5068f20743 |
.idata |
512 |
a63f22359f3e0777a24524c029514265 |
.tls |
512 |
1601b901c60cfd7b7f3008e385460d76 |
.rsrc |
144384 |
ffc9870132c2aad19ff23a3ad0be22fc |
.themida |
3276800 |
eebde761b83a04a480d2405e79a4465d |
.reloc |
16 |
b3a5e0e4cfe8502a3131a220fc4263b8 |