How to remove PFU102.exe
PFU102.exe
The module PFU102.exe has been detected as Ransom.Sabsik
File Details
| Product Name: | O&O DiskImage |
| Company Name: | O&O Software GmbH |
| MD5: | 1f0140a59892016c15543f13cc1cc9f2 |
| Size: | 2 MB |
| First Published: | 2022-12-11 23:16:57 (2 years ago) |
| Latest Published: | 2023-02-28 23:20:46 (2 years ago) |
| Status: | Ransom.Sabsik (on last analysis) | |
| Analysis Date: | 2023-02-28 23:20:46 (2 years ago) |
Common Places:
| %programfiles% |
| %commonappdata% |
| %programfiles% |
Geography:
| 66.7% | ||
| 33.3% |
OS Version:
| Windows 10 | 66.7% | |
| Windows 8.1 | 33.3% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x0004f580 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 327680 | c826f597d347f45e13c41b7eecc38c88 |
| .rdata | 16384 | 55becc6ae0ae0926dacec7ae1ce0f6ad |
| .data | 4096 | 047dc1a62949a54966c05065aa8a36d7 |
| .data1 | 4096 | f60729c702093cf268515043e90b9d12 |
| .rsrc | 565248 | 164c6947e72178a420bd9fd257248c8c |
| .pfu102 | 1203622 | 3b303b9e08ef8e795f5b84705d781573 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for PFU102.exe