How to remove bf4.exe
bf4.exe
The module bf4.exe has been detected as Ransom.Occamy
File Details
| Product Name: | Battlefield 4™ |
| Company Name: | EA Digital Illusions CE AB |
| MD5: | ded83cb9bb9334f1442a0099096632c9 |
| Size: | 17 MB |
| First Published: | 2017-06-08 07:10:21 (8 years ago) |
| Latest Published: | 2025-01-15 23:01:33 (a year ago) |
| Status: | Ransom.Occamy (on last analysis) | |
| Analysis Date: | 2025-01-15 23:01:33 (a year ago) |
Common Places:
| %sysdrive%\games |
| %sysdrive%\games |
| %sysdrive%\games |
| %sysdrive% |
| %sysdrive%\games\battlefied 4 |
Geography:
| 33.3% | ||
| 16.7% | ||
| 16.7% | ||
| 16.7% | ||
| 16.7% |
OS Version:
| Windows 10 | 66.7% | |
| Windows 7 | 33.3% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 64 |
| Image Base: | 0x0000000140000000 |
| Entry Address: | 0x02f7471c |
PE Sections:
| Name | Size of data | MD5 |
| .text | 0 | 00000000000000000000000000000000 |
| ctr | 0 | 00000000000000000000000000000000 |
| .rdata | 0 | 00000000000000000000000000000000 |
| .data | 0 | 00000000000000000000000000000000 |
| .pdata | 0 | 00000000000000000000000000000000 |
| typeinfo | 0 | 00000000000000000000000000000000 |
| fieldinf | 0 | 00000000000000000000000000000000 |
| .tls | 0 | 00000000000000000000000000000000 |
| .rodata | 0 | 00000000000000000000000000000000 |
| _RDATA | 0 | 00000000000000000000000000000000 |
| .3DMGAME | 0 | 00000000000000000000000000000000 |
| .SCY | 0 | 00000000000000000000000000000000 |
| .3DMGAME | 0 | 00000000000000000000000000000000 |
| .3DMGAME | 18003456 | 81058cc3a79d36a3068ff3e2f68ca1bf |
| .rsrc | 190976 | 3b2485f7cf7df1902649c421fdadd2c9 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for bf4.exe