How to remove f30979672.exe
- File Details
- Overview
- Analysis
f30979672.exe
The module f30979672.exe has been detected as Ransom.Blocker
File Details
Product Name: |
|
Company Name: |
|
MD5: |
a09bdc9b92c3ab8494172038bd419f2e |
Size: |
888 KB |
First Published: |
2022-02-13 23:36:53 (3 years ago) |
Latest Published: |
2022-02-13 23:38:51 (3 years ago) |
Status: |
Ransom.Blocker (on last analysis) |
|
Analysis Date: |
2022-02-13 23:38:51 (3 years ago) |
%desktop%\recovery |
%desktop%\recovery |
%desktop%\recovery |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0003b12e |
Name |
Size of data |
MD5 |
.text |
368640 |
65b743a8883fa6c79d96dd0cc61c5243 |
.rdata |
102400 |
e520693921b6a1fa9721854260914838 |
.data |
20480 |
fde430e3e3c359c83c4c04800e07529d |
.rsrc |
413696 |
12f1b140ceb35c99a2795567f0dd72e2 |