How to remove $RUMOOS2.exe
- File Details
- Overview
- Analysis
$RUMOOS2.exe
The module $RUMOOS2.exe has been detected as Trojan.Downloader
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
ca0531f4cb3737680032b391e8623aaf |
| Size: |
3 MB |
| First Published: |
2022-11-17 23:14:18 (2 years ago) |
| Latest Published: |
2022-11-17 23:14:18 (2 years ago) |
| Status: |
Trojan.Downloader (on last analysis) |
|
| Analysis Date: |
2022-11-17 23:14:18 (2 years ago) |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x000d4d78 |
| Name |
Size of data |
MD5 |
| .text |
1239040 |
9f5b8a4a47560d0033352411c578df8b |
| .rdata |
356864 |
4f2743b7a58b12be202b1a2068576d2e |
| .data |
28672 |
541b090acf2069a186238a3ef6914ee0 |
| .gfids |
8704 |
aa9c6e176289e6e06a76b696ca419b82 |
| .giats |
512 |
4b8b78eab9c3a4560db5b80f4e394cd2 |
| .tls |
512 |
1f354d76203061bfdd5a53dae48d5435 |
| _RDATA |
4096 |
7a9be3d49f3c5ee4989d70fcfbcc87a5 |
| .rsrc |
1961472 |
cf66641901746ad1f540dd7e51403f3d |
| .reloc |
84992 |
ca4c66feb050b7fcb29612c52fb50d0f |