How to remove DD.exe

DD.exe

The module DD.exe has been detected as Virus.Grenam

DD.exe

DD.exe is a Windows file recorded in the ThreatInfo database. The current detection status is Virus.Grenam, based on the latest analysis from 2024-10-30 23:02:57 (2 years ago).

If DD.exe appears on your computer unexpectedly, treat it as suspicious. Check its location, digital signature, and recent system changes before allowing it to run. A full anti-malware scan is recommended when this file is detected as Virus.Grenam.

MD5: 1d3512e1336a4615a8639b02f5c64bec
Size: 521 KB
First Published: 2024-10-30 23:02:57 (2 years ago)
Latest Published: 2024-10-30 23:02:57 (2 years ago)
Status: Virus.Grenam (on last analysis)
Analysis Date: 2024-10-30 23:02:57 (2 years ago)
%sysdrive%\software\recuperacion datos\disk drill pro v2.0.0.338.multileguaje-es + crack

ThreatInfo has observed DD.exe in the locations listed above. Files found in temporary folders, user profile folders, startup locations, or unusual application directories should be reviewed more carefully than files installed under a known program directory.

100.0%

The strongest geographic signal for this file is Colombia with 100.0% of observed hits. Geographic distribution can help identify targeted campaigns, regional software bundles, or where a file is most commonly reported.

Windows 10 100.0%

The most common operating system signal for DD.exe is Windows 10 with 100.0% of observed hits. If your system differs from the common profile, check whether the file was introduced by a specific installer, archive, or removable device.

DD.exe is identified as pe for 32 systems. The subsystem is Windows GUI. PE header values are useful for triage, especially when they do not match the expected publisher, product, or release timeline.

Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00072814

PE Sections:

Name Size of data MD5
.text 459264 62249c187bd2d89e7a755a795429d613
.itext 2560 a55cb933bb4acf9de8ba7ac965575ef4
.data 9728 dc9b863276062b2e2c1e1ffe56d7d0b8
.bss 0 d41d8cd98f00b204e9800998ecf8427e
.idata 11264 aa8abe6176103dc524e88e85de4efcee
.tls 0 d41d8cd98f00b204e9800998ecf8427e
.rdata 512 74f253aa9f19b5b236f8efef4cfa8a49
.reloc 26624 f0d825167de67ca2352628a4f816af30
.rsrc 23040 90c0335dcb9b9bb03df0d7448a2a7b2b

PE section names and hashes can reveal packing, injected resources, or unusual build artifacts. Sections with uncommon names, very large raw data, or hashes that differ from a trusted copy deserve additional review.

More information:

Download GridinSoft Anti-Malware - Removal tool for DD.exe