How to remove 71BA.exe
71BA.exe
The module 71BA.exe has been detected as Ransom.Sabsik
File Details
| Product Name: | GoldenEggs |
| MD5: | 2e201674bb2cba3e7f20d120efa30f6c |
| Size: | 705 KB |
| First Published: | 2023-07-04 23:15:17 (2 years ago) |
| Latest Published: | 2023-07-04 23:50:56 (2 years ago) |
| Status: | Ransom.Sabsik (on last analysis) | |
| Analysis Date: | 2023-07-04 23:50:56 (2 years ago) |
Common Places:
| %temp% |
| %temp% |
| %temp% |
| %localappdata% |
| %temp% |
| %localappdata% |
| %temp% |
Geography:
| 100.0% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x0000430c |
PE Sections:
| Name | Size of data | MD5 |
| .text | 646144 | 49f9e478f45a1f95b8cb221b5130ead9 |
| .data | 6144 | 84965f3b3e2e2a7e72db793228b849ba |
| .rsrc | 60928 | db017afc230c255abf836306c8b8b7f4 |
| .reloc | 8192 | b86376ef3ee67689061176c37efb3f6e |
More information:
Download GridinSoft
Anti-Malware - Removal tool for 71BA.exe