在使用本网站之前,请确保您了解并同意我们的数据保护政策。 查看隐私政策
在线病毒检测器 | v.1.0.177.174 |
数据库版本: | 2024-05-24 11:00:22 |
Sabsik病毒能够下载附加的恶意软件到您的计算机上,这些软件可以加密您的文件,并要求支付赎金以恢复它们。这种病毒是勒索软件变种之一,对您的数据安全特别危险。
File | 单文件制作_x64.exe |
已检查 | 2024-05-24 08:40:06 |
MD5 | 3f1da7dedb1290524a11d5979e150874 |
SHA1 | de5c66a176726d94006e365d101d7d9a71e08732 |
SHA256 | ad58f4febf7780bb453904477d57e90d341b8c385cabeeff7fba039473603e22 |
SHA512 | f70ba53a175548a9f2e1e46bec79cc9e30e2e229074b18e7ce18e01d8fb489e080a1651c3c4bcf747dac9d03abbba30a29a209e0c82e1dd85b1ade2665b5ffb4 |
Imphash | c57e4f526395288c8406444b38b1e657 |
File Size | 4623521 bytes |
Gridinsoft能够识别并消除Ransom.Win64.Sabsik.sa,无需进一步的用户干预。
Comments | |
ProductVersion | 7.0.2.3822 |
LegalTrademarks | mefcl; |
Special Build | |
PrivateBuild | |
CompanyName | JexChan |
FileDescription | JexChan-PYG-JL-mefcl |
FileVersion | 7.0.2.3822 |
InternalName | Simple packaging tool |
LegalCopyright | Copyright ? 2012 - 2024 JexChan jl |
OriginalFilename | Spackaging.exe |
ProductName | Simple packaging tool |
Translation | 0x0804 0x03a8 |
f097373971afc98faf9573e9a9cfd9eb 84cf9457c9643a3d8daa59df67c5d7cf 6574f29e8e8e8e8e |
|
Image Base: | 0x140000000 |
Entry Point: | 0x140c2e3e0 |
Compilation: | 2023-04-22 09:11:23 |
Checksum: | 0x0047250b (Actual: 0x004765e8) |
OS Version: | 5.2 |
PEiD: | MS-DOS executable PE32+ executable (GUI) x86-64 (stripped to external PDB), for MS Windows, MZ for MS-DOS |
Sign: | The PE file does not contain a certificate table. |
Sections: | 3 |
Imports: | KERNEL32, SHLWAPI, USER32, GDI32, ADVAPI32, SHELL32, OLEAUT32, VERSION, SETUPAPI, |
Exports: | 18 |
Resources: | 33 |
名称 | 虚拟地址 | 虚拟大小 | 原始大小 | MD5 | 熵 |
---|---|---|---|---|---|
.MPRESS1 | 0x00001000 | 0x00c2d000 | 0x00456200 | 478ff53444294f8b520c774003b53764 | 8.00 |
.MPRESS2 | 0x00c2e000 | 0x00000eda | 0x00001000 | 42f803343ddae4523e525bffaa0bc40f | 5.86 |
.rsrc | 0x00c2f000 | 0x0001163c | 0x00011800 | a8e54c59b4be102f9f5ac8528c2b1424 | 5.21 |