How to remove 2349.exe
2349.exe
The module 2349.exe has been detected as Ransom.STOP
File Details
| Product Name: | Gammy |
| Company Name: | Thunderstack |
| MD5: | 806598a8df4290eaed23b7d1e288fd44 |
| Size: | 779 KB |
| First Published: | 2023-08-24 23:58:44 (2 years ago) |
| Latest Published: | 2023-08-28 23:10:18 (2 years ago) |
| Status: | Ransom.STOP (on last analysis) | |
| Analysis Date: | 2023-08-28 23:10:18 (2 years ago) |
Common Places:
| %temp% |
| %temp% |
| %localappdata% |
| %temp% |
Geography:
| 75.0% | ||
| 25.0% |
OS Version:
| Windows 7 | 75.0% | |
| Windows 10 | 25.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x00007dc2 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 154112 | d69771a3c7ef68331be586255dfed3ea |
| .data | 612352 | b49bdc2340d64ed8cfb2bb4f9c8e5f1a |
| .rsrc | 30208 | 94cd9e08d99b52821d5e42fc66088b09 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for 2349.exe