How to remove $RNJGX2R.exe
- File Details
- Overview
- Analysis
$RNJGX2R.exe
The module $RNJGX2R.exe has been detected as Ransom.STOP
File Details
| Product Name: |
|
| MD5: |
fcb5a82d0a3fb2206872d8dbdf3054b8 |
| Size: |
711 KB |
| First Published: |
2023-02-23 23:45:49 (2 years ago) |
| Latest Published: |
2023-02-23 23:49:16 (2 years ago) |
| Status: |
Ransom.STOP (on last analysis) |
|
| Analysis Date: |
2023-02-23 23:49:16 (2 years ago) |
| %sysdrive%\$recycle.bin |
| %temp% |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x0000567d |
| Name |
Size of data |
MD5 |
| .text |
74752 |
a5facbbfe28b6b2dbc37cf5e94e8e831 |
| .data |
605184 |
07516b60e83929b21b55143dcd02e4ed |
| .kuw |
1024 |
0f343b0931126a20f133d67c2b018a3b |
| .sina |
6656 |
3c63825015aabd810674f44afac6d12b |
| .hevi |
1024 |
0f343b0931126a20f133d67c2b018a3b |
| .sofim |
1024 |
0f343b0931126a20f133d67c2b018a3b |
| .rsrc |
27136 |
aa525e367f6771d58081358712bb5725 |
| .reloc |
10752 |
bff34c3d9f4b244a17f8ae7b7aff2a43 |