How to remove qu7167.exe
qu7167.exe
The module qu7167.exe has been detected as Ransom.STOP
File Details
| Product Name: | SteamPunk |
| Company Name: | Sotona |
| MD5: | ecb5dd41f6a04d02ee966393d5d67e1c |
| Size: | 342 KB |
| First Published: | 2023-07-19 23:53:34 (2 years ago) |
| Latest Published: | 2023-07-19 23:58:50 (2 years ago) |
| Status: | Ransom.STOP (on last analysis) | |
| Analysis Date: | 2023-07-19 23:58:50 (2 years ago) |
Common Places:
| %temp% |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
Geography:
| 100.0% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x00003f07 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 88064 | 9556cb377ef737d5e2dfbfd9e19ebd34 |
| .data | 189440 | 4529706e4d4a842e507c9d4a6cbc63ef |
| .rsrc | 71680 | 74997612486bff9a98cbe2765987f737 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for qu7167.exe