How to remove GomENG.dll
GomENG.dll
The module GomENG.dll has been detected as Worm.Ramnit
File Details
Product Name: | GOM Player |
Company Name: | Gretech Corp. |
MD5: | d88cbdf6c94624806cea9766397911f1 |
Size: | 488 KB |
First Published: | 2018-04-20 21:03:48 (6 years ago) |
Latest Published: | 2018-04-20 21:03:48 (6 years ago) |
Status: | Worm.Ramnit (on last analysis) | |
Analysis Date: | 2018-04-20 21:03:48 (6 years ago) |
Common Places:
%sysdrive%\$recycle.bin\s-1-5-21-3441542776-2206585850-244734146-1000\$rdrmjh1\gretech\gomplayer |
Geography:
100.0% |
OS Version:
Windows 8 | 100.0% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x10000000 |
Entry Address: | 0x0006b000 |
PE Sections:
Name | Size of data | MD5 |
.text | 16384 | e8afe55f67e138c60c90e240250e83a2 |
.rdata | 4096 | 468909b3bcb7656fd58d019ad140a9e2 |
.data | 12288 | e44f8a673c0c61c5c727fafb3338c0cd |
.rsrc | 393216 | 0bb32f604def3b6dbebe55ce1f5e5431 |
.reloc | 4096 | 510571a0897c016f1e70591057fc2de2 |
.text | 65536 | 55bdfe1c5d30a6fe8c9832651dd4192c |
More information:
Download GridinSoft
Anti-Malware - Removal tool for GomENG.dll