How to remove 228F.tmp.exe

228F.tmp.exe

The module 228F.tmp.exe has been detected as Worm.Ramnit

228F.tmp.exe
MD5: 0517c2d7a20fc8e636b998229b159ce7
Size: 2 MB
First Published: 2021-01-05 10:52:53 (4 years ago)
Latest Published: 2021-01-05 10:52:53 (4 years ago)
Status: Worm.Ramnit (on last analysis)
Analysis Date: 2021-01-05 10:52:53 (4 years ago)
%temp%
100.0%
Windows 7 100.0%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x005b2000

PE Sections:

Name Size of data MD5
52736 3b1d3b25422350bd180235aecd961305
.rsrc 512 9deaaf04df13a5ad9c7491f13b1614e0
.idata 512 247b71c093bd1817fefef4b8349db92d
512 31e56f133556ff09e24d62f81a5fd241
seqqtmra 2236416 77aa3429eb3215a6bba15ababb5f75fd
mvwjufac 1024 b8cb025ef21002ee323849bcdbfe37d1
.taggant 8704 251a69bea822bba36f5ea87471fae285
.text 110592 bf8f4b4d880b38e85ee0f3152fb935e9

More information:

Download GridinSoft Anti-Malware - Removal tool for 228F.tmp.exe