How to remove xxxx[1].exe
- File Details
- Overview
- Analysis
xxxx[1].exe
The module xxxx[1].exe has been detected as Ransom.Sabsik
File Details
Product Name: |
|
Company Name: |
|
MD5: |
aad2435a3663422f7c49a1e0ac3500b8 |
Size: |
1 MB |
First Published: |
2021-12-03 21:05:30 (3 years ago) |
Latest Published: |
2021-12-03 21:37:19 (3 years ago) |
Status: |
Ransom.Sabsik (on last analysis) |
|
Analysis Date: |
2021-12-03 21:37:19 (3 years ago) |
%localappdata%\microsoft\windows\inetcache\ie |
%localappdata%\microsoft\windows\inetcache\ie |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00133000 |
Name |
Size of data |
MD5 |
|
0 |
d41d8cd98f00b204e9800998ecf8427e |
|
512 |
99f6210bb841d72cb68204a2d9079a6d |
.rsrc |
1045948 |
6419078e1f010b4b8f8e6d628820c78c |
|
96429 |
decaf2d10e896ab04eb198b03685202b |