How to remove FrameWizard.exe
- File Details
- Overview
- Analysis
FrameWizard.exe
The module FrameWizard.exe has been detected as Worm.Ramnit
File Details
Company Name: |
|
MD5: |
fb30be507b63e437258f1b696e16e12e |
Size: |
726 KB |
First Published: |
2018-06-05 14:09:11 (6 years ago) |
Latest Published: |
2018-06-05 14:12:25 (6 years ago) |
Status: |
Worm.Ramnit (on last analysis) |
|
Analysis Date: |
2018-06-05 14:12:25 (6 years ago) |
%programfiles%\vimicro corporation\vmuvc\x86 |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0009c000 |
Name |
Size of data |
MD5 |
.text |
107008 |
44fb10ab46105b5050056bacbdb5676e |
.data |
10752 |
1f68b1d2c2ed15de29446ad7c339d59b |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rdata |
512 |
de422dc0d9364db17c11dd5a666ed217 |
.idata |
21504 |
e3c23c2238c0f9737d7d640c8dc4a73e |
.edata |
1024 |
7cfd77096a71695598637e706de621e3 |
.rsrc |
464384 |
6538a779216b49664fe6b607011208f5 |
.reloc |
5120 |
71009667b4b513df478ab1682be8bbc6 |
.text |
131584 |
a84c7a71e41bece777149cae8ef684f9 |