How to remove setup.exe
setup.exe
The module setup.exe has been detected as Ransom.Sabsik
File Details
| Product Name: | installer |
| Company Name: | |
| MD5: | 7abdf78c3fd95459aa6123e16e16a9a4 |
| Size: | 1 MB |
| First Published: | 2022-07-16 23:26:13 (3 years ago) |
| Latest Published: | 2022-09-25 23:58:52 (3 years ago) |
| Status: | Ransom.Sabsik (on last analysis) | |
| Analysis Date: | 2022-09-25 23:58:52 (3 years ago) |
Common Places:
| %sysdrive%\$recycle.bin\s-1-5-21-3113757088-2523621972-1823866512-1001\$rhlec0p\setup |
| %desktop%\varios |
| %desktop%\varios |
Geography:
| 66.7% | ||
| 33.3% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x000b5eec |
PE Sections:
| Name | Size of data | MD5 |
| .text | 735232 | ad6e46e3a3acdb533eb6a077f6d065af |
| .itext | 6144 | d40fc822339d01f2abcc5493ac101c94 |
| .data | 14336 | 4c195d5591f6d61265df08a3733de3a2 |
| .bss | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .idata | 4096 | a73d686f1e8b9bb06ec767721135e397 |
| .didata | 512 | 41b8ce23dd243d14beebc71771885c89 |
| .edata | 512 | 37c1a5c63717831863e018c0f51dabb7 |
| .tls | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .rdata | 512 | 8f2f090acd9622c88a6a852e72f94e96 |
| .rsrc | 69120 | ea59133c6e3c6e2403049207d7bfc3dc |
More information:
Download GridinSoft
Anti-Malware - Removal tool for setup.exe