How to remove gCF01.tmp.exe
- File Details
- Overview
- Analysis
gCF01.tmp.exe
The module gCF01.tmp.exe has been detected as Ransom.Gen
File Details
MD5: |
962444fa063123a3478a41654dd0f672 |
Size: |
186 KB |
First Published: |
2017-05-27 16:08:41 (7 years ago) |
Latest Published: |
2017-06-01 05:08:54 (7 years ago) |
Status: |
Ransom.Gen (on last analysis) |
|
Analysis Date: |
2017-06-01 05:08:54 (7 years ago) |
g7E26.tmp.exe |
gCF01.tmp.exe |
Israel |
50.0% |
|
Vietnam |
50.0% |
|
Windows 10 |
50.0% |
|
Windows 7 |
50.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0000a5ac |
Name |
Size of data |
MD5 |
.text |
95232 |
91e46e215def21ff7feede69a265c206 |
.rdata |
24064 |
87560a681be6a90e834cbc1866b88ece |
.data |
64512 |
9e40ba9a7a69d8d5965bb24cc7bd11c7 |
.rsrc |
512 |
8f66f703e4f329d3a1d6d7e9351f3cfd |
.reloc |
5632 |
f7fa6d61e1ad91b634cf457b8b45ab94 |