How to remove 228F.tmp.exe
- File Details
- Overview
- Analysis
228F.tmp.exe
The module 228F.tmp.exe has been detected as Worm.Ramnit
File Details
MD5: |
0517c2d7a20fc8e636b998229b159ce7 |
Size: |
2 MB |
First Published: |
2021-01-05 10:52:53 (4 years ago) |
Latest Published: |
2021-01-05 10:52:53 (4 years ago) |
Status: |
Worm.Ramnit (on last analysis) |
|
Analysis Date: |
2021-01-05 10:52:53 (4 years ago) |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x005b2000 |
Name |
Size of data |
MD5 |
|
52736 |
3b1d3b25422350bd180235aecd961305 |
.rsrc |
512 |
9deaaf04df13a5ad9c7491f13b1614e0 |
.idata |
512 |
247b71c093bd1817fefef4b8349db92d |
|
512 |
31e56f133556ff09e24d62f81a5fd241 |
seqqtmra |
2236416 |
77aa3429eb3215a6bba15ababb5f75fd |
mvwjufac |
1024 |
b8cb025ef21002ee323849bcdbfe37d1 |
.taggant |
8704 |
251a69bea822bba36f5ea87471fae285 |
.text |
110592 |
bf8f4b4d880b38e85ee0f3152fb935e9 |