How to remove CoolType.dll
- File Details
- Overview
- Analysis
CoolType.dll
The module CoolType.dll has been detected as Worm.Ramnit
File Details
Product Name: |
|
Company Name: |
|
MD5: |
c01d8f1e952bcf811272f5c3c623ae1a |
Size: |
2 MB |
First Published: |
2017-08-16 14:13:41 (7 years ago) |
Latest Published: |
2017-08-16 14:13:41 (7 years ago) |
Status: |
Worm.Ramnit (on last analysis) |
|
Analysis Date: |
2017-08-16 14:13:41 (7 years ago) |
%programfiles%\adobe\reader 9.0\reader |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x08000000 |
Entry Address: |
0x0025f000 |
Name |
Size of data |
MD5 |
.text |
1630208 |
0a4a1dfba6ce15bb19660bbd41c76a1e |
.rdata |
573440 |
4b99a6d979e4848bf57467e0992c4ec4 |
.data |
94208 |
bf25c2a61701926ef6f636b8d4f07380 |
.rsrc |
4096 |
7bd100d98d89f449bfbabed6ba16e188 |
.reloc |
126976 |
929558968e85befee23f15fdd42f1edc |
.text |
159744 |
9d58b485ac10e0c1bf36ff9c7ceb381a |