How to remove 49DD.exe
49DD.exe
The module 49DD.exe has been detected as Ransom.Sabsik
File Details
| Product Name: | SignKeyGen |
| Company Name: | Adler Development |
| MD5: | 55aa8bd6875890b66f61d66e7beba582 |
| Size: | 5 MB |
| First Published: | 2022-05-02 23:17:28 (3 years ago) |
| Latest Published: | 2022-06-01 23:44:26 (3 years ago) |
| Status: | Ransom.Sabsik (on last analysis) | |
| Analysis Date: | 2022-06-01 23:44:26 (3 years ago) |
Overview
| Signed By: | Node32 ESET |
| Status: | Valid |
Common Places:
| %temp% |
| %temp% |
| %temp% |
Geography:
| 33.3% | ||
| 33.3% | ||
| 33.3% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x0001944f |
PE Sections:
| Name | Size of data | MD5 |
| .text | 101888 | 67877421eaab5c9c8849be36cf2d8393 |
| .rdata | 15360 | 357b6ad655a37ac024224ff5636c5902 |
| .data | 2560 | 72d633f782435705f2ee0a7ab5aab2e4 |
| .rsrc | 20480 | e527e863423a58b6d3f9e7fd80503a9a |
More information:
Download GridinSoft
Anti-Malware - Removal tool for 49DD.exe