How to remove A0045734.exe
- File Details
- Overview
- Analysis
A0045734.exe
The module A0045734.exe has been detected as Worm.Ramnit
File Details
Product Name: |
|
Company Name: |
|
MD5: |
9ee74dca00727e9760d90820a6624a3b |
Size: |
1 MB |
First Published: |
2018-04-15 08:11:30 (6 years ago) |
Latest Published: |
2018-04-15 08:11:49 (6 years ago) |
Status: |
Worm.Ramnit (on last analysis) |
|
Analysis Date: |
2018-04-15 08:11:49 (6 years ago) |
%sysdrive%\งานกู้ 240658\root\program files |
%sysdrive%\งานกู้ 240658\root\system volume information\_restore{1cb86707-6330-47ef-9d8f-939014171a0b} |
ImgBurnPreview.exe |
A0045734.exe |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x004c1000 |
Name |
Size of data |
MD5 |
UPX0 |
0 |
00000000000000000000000000000000 |
UPX1 |
182272 |
ee4b83f5ae1f40b2dec1200dea5d466e |
.rsrc |
31232 |
bf33e597a6fd6bc5831c86d25835438a |
.text |
186880 |
5b89661ac49ed30e73777a5e6f105fc0 |
.text |
186880 |
8813897c90ea4ca2b04a88ae185fff77 |
.text |
186880 |
fc1489e49c1489912d48d3daf7f44bc9 |
.text |
186880 |
6e1ccfe3ea75e3ca1937843faee0f922 |
.text |
186880 |
20ef900b14880368c4e15048c52abd73 |
.text |
186880 |
be871cb41ce96919542f330023cf66d1 |
.text |
186880 |
6c6988f728d5cfccf1af20911e21a4c8 |
.text |
166400 |
f339d898996f732f05fcd6a3c1ff16c5 |