How to remove f_0000e4
f_0000e4
The module f_0000e4 has been detected as Ransom.Sabsik
File Details
| Product Name: | okafwof0kgs |
| Company Name: | |
| MD5: | b856e6b728f3f6559eaed4245b6832bf |
| Size: | 2 MB |
| First Published: | 2022-09-25 23:50:46 (3 years ago) |
| Latest Published: | 2022-09-25 23:50:46 (3 years ago) |
| Status: | Ransom.Sabsik (on last analysis) | |
| Analysis Date: | 2022-09-25 23:50:46 (3 years ago) |
Overview
| Signed By: | Digital Robin Limited |
| Status: | Valid |
Common Places:
| %localappdata%\opera software\opera gx stable\cache |
Geography:
| 100.0% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x000b5eec |
PE Sections:
| Name | Size of data | MD5 |
| .text | 735744 | 43af0a9476ca224d8e8461f1e22c94da |
| .itext | 6144 | 185e04b9a1f554e31f7f848515dc890c |
| .data | 14336 | cab2107c933b696aa5cf0cc6c3fd3980 |
| .bss | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .idata | 4096 | e7d1635e2624b124cfdce6c360ac21cd |
| .didata | 512 | 8ced971d8a7705c98b173e255d8c9aa7 |
| .edata | 512 | 8d4e1e508031afe235bf121c80fd7d5f |
| .tls | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .rdata | 512 | 8f2f090acd9622c88a6a852e72f94e96 |
| .rsrc | 69632 | 2e929a3ed5b59110ab2e0d69359de235 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for f_0000e4