Online Virus Checker | v.1.0.155.174 |
DB Version: | 2024-01-25 13:02:33 |
STOP/Djvu Ransomware, also known simply as STOP Ransomware or Djvu Ransomware, is a type of malicious software that encrypts the files on a victim's computer and demands a ransom for their decryption. This ransomware variant has been active for several years and has affected numerous users and organizations.
File | MenuExtendido.exe |
Checked | 2024-01-25 11:18:28 |
MD5 | 0b5eb3cb4a95e162d69a20e6c1ecf7b5 |
SHA1 | bac8d203231a5701e4738967d53f3647931dfb5c |
SHA256 | 39c52799056c0b5aecf1ac8084b6a307896603e8520430d1411962b76d70cb78 |
SHA512 | 031be0f3654034f014c14b773aba68c2bc3fbc8d428f51075abd67672c8a98a7bc374ac6ff29530c6be60a57ba728f76d514d5b71b85842e5173bb6b8dfd7940 |
Imphash | 2f727a975c44a2925ace416e4a5ad2d8 |
File Size | 11082240 bytes |
Gridinsoft has the capability to identify and eliminate Ransom.Win32.STOP.dg!se51856 without requiring further user intervention.
Comments | Creado con AutoPlay Media Studio (www.indigorose.com) |
CompanyName | Doofy´s Projects |
FileDescription | Menu Extendido para Windows |
FileVersion | 7.3.0.0 |
InternalName | ams_runtime |
LegalCopyright | © Doofy´s Projects |
OriginalFilename | MenuExtendido.exe |
ProductName | MenuExtendido |
ProductVersion | 7.3.0.0 |
Translation | 0x0409 0x0000 |
493f48d7fa0f12541d258d62ca498b1d 7b303b99564165eadb247d64411b19ea c0dce8e8e8e8dcc4 |
|
Image Base: | 0x00400000 |
Entry Point: | 0x00644f2b |
Compilation: | 2015-02-10 21:03:05 |
Checksum: | 0x00000000 (Actual: 0x00a9dde0) |
OS Version: | 5.0 |
PEiD: | PE32 executable (GUI) Intel 80386, for MS Windows |
Sign: | The PE file does not contain a certificate table. |
Sections: | 6 |
Imports: | kernel32, user32, advapi32, oleaut32, ole32, ntdll, SHFolder, shlwapi, |
Exports: | 0 |
Resources: | 738 |
Name | Virtual Address | Virtual Size | Raw Size | MD5 | Entropy |
---|---|---|---|---|---|
.text | 0x00001000 | 0x003d80d4 | 0x003d8200 | 48372a2fddf5240e0d09df123a52d31d | 6.66 |
.rdata | 0x003da000 | 0x000d5798 | 0x000d5800 | 762f7ea9280ce4931523d3ac2acc2acb | 5.27 |
.data | 0x004b0000 | 0x00076b58 | 0x00024400 | e57e9c9325c8bb5af6716dec814c194a | 5.35 |
.rsrc | 0x00527000 | 0x001667a4 | 0x00166800 | a99e2fb65a248890d45e608484e8c37f | 7.35 |
.enigma1 | 0x0068e000 | 0x00001000 | 0x00412000 | 5c167ca2d03f2f4ce9e534146872b662 | 7.88 |
.enigma2 | 0x0068f000 | 0x00047000 | 0x00047000 | 41ad950b5dc6b0438dde60417e0dc1b3 | 5.89 |