How to remove 1DFF.exe
1DFF.exe
The module 1DFF.exe has been detected as Ransom.STOP
File Details
| Product Name: | GoldenSeg |
| MD5: | 7c40175d0ecb5dc8be01144ccbc14071 |
| Size: | 811 KB |
| First Published: | 2023-07-18 23:08:29 (2 years ago) |
| Latest Published: | 2023-07-19 23:12:11 (2 years ago) |
| Status: | Ransom.STOP (on last analysis) | |
| Analysis Date: | 2023-07-19 23:12:11 (2 years ago) |
Common Places:
| %temp% |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
Geography:
| 53.3% | ||
| 30.0% | ||
| 16.7% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x000047ab |
PE Sections:
| Name | Size of data | MD5 |
| .text | 647680 | 9dade5136e88531ef9d57a28843527fb |
| .data | 6144 | cc2884593a7d28c999efaf367051546e |
| .rsrc | 164352 | da95c19a9c1cfa5eeb69965ba5eec6ed |
| .reloc | 11776 | 17a4bb9dea870cdfe0d255f85ebfdf17 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for 1DFF.exe