How to remove $RODM9A1.exe
- File Details
- Overview
- Analysis
$RODM9A1.exe
The module $RODM9A1.exe has been detected as Trojan.IBuddy
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
80eaf10ea7dd020fd42a51a96a85995d |
| Size: |
4 MB |
| First Published: |
2021-02-27 16:23:33 (4 years ago) |
| Latest Published: |
2021-02-27 16:23:33 (4 years ago) |
| Status: |
Trojan.IBuddy (on last analysis) |
|
| Analysis Date: |
2021-02-27 16:23:33 (4 years ago) |
Overview
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
64 |
| Image Base: |
0x0000000140000000 |
| Entry Address: |
0x00290698 |
| Name |
Size of data |
MD5 |
| .text |
2946560 |
57bfe5c9e28fe61401a2076ca5a9a270 |
| .rdata |
1171456 |
4af3ede21160aa6fbed3febd5db359c3 |
| .data |
176640 |
e5153fa03f43f183bd691ca27599eced |
| .pdata |
140800 |
807eae14b5a07032d1fef56ce6f4da02 |
| .gfids |
108544 |
25d972c0c0441123175e140e556ebbc3 |
| .giats |
512 |
53164ed77f7a3f4ee6dbf2fb3c77d12b |
| .tls |
512 |
1f354d76203061bfdd5a53dae48d5435 |
| .rsrc |
543744 |
19a5334b7588ecae75fa7d3afeb057ee |
| .reloc |
73728 |
a48c945385eeaa5975f8cf1ade576e31 |