How to remove DTMessageLib.dll
- File Details
- Overview
- Analysis
DTMessageLib.dll
The module DTMessageLib.dll has been detected as Worm.Ramnit
File Details
Product Name: |
|
Company Name: |
|
MD5: |
16afdbc7a7fc8dc41557d5246cef196d |
Size: |
140 KB |
First Published: |
2018-04-20 21:03:48 (6 years ago) |
Latest Published: |
2018-04-20 21:03:48 (6 years ago) |
Status: |
Worm.Ramnit (on last analysis) |
|
Analysis Date: |
2018-04-20 21:03:48 (6 years ago) |
%sysdrive%\$recycle.bin\s-1-5-21-3441542776-2206585850-244734146-1000\$rdrmjh1\intel\intel(r) management engine components |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x10000000 |
Entry Address: |
0x00014000 |
Name |
Size of data |
MD5 |
.text |
40960 |
fca3d2f419dfbe68a9582e8d0f48d880 |
.rdata |
16384 |
49f06c2a227f4c3df0b602834cf0c419 |
.data |
4096 |
223b324edbd0d3908c5e6579a79d8949 |
.rsrc |
4096 |
90372e1663ad81bd48adf23fcbc29b2c |
.reloc |
8192 |
b484a451edd3808f160082b7b7c11bbb |
.text |
65536 |
2b221d82e9bae2a5529fd341602aa15a |