How to remove LOADER_USER.exe
- File Details
- Overview
- Analysis
LOADER_USER.exe
The module LOADER_USER.exe has been detected as Worm.Ramnit
File Details
Product Name: |
|
Company Name: |
|
MD5: |
b8120105f3c80a4dc32c17649d0a609d |
Size: |
4 MB |
First Published: |
2017-07-05 18:09:28 (7 years ago) |
Latest Published: |
2017-07-05 18:09:28 (7 years ago) |
Status: |
Worm.Ramnit (on last analysis) |
|
Analysis Date: |
2017-07-05 18:09:28 (7 years ago) |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x004a3000 |
Name |
Size of data |
MD5 |
.text |
192512 |
a9135d9aafc155438cfc3f70c2687bdf |
.rdata |
53248 |
ef328eacc9fe91cea9f5d34bbb97b253 |
.data |
278528 |
797d8690c44a85c27760f7dbc6703588 |
.rsrc |
520192 |
b022af5312022d366c89089d2549ef38 |
.text |
258048 |
7008dbfa9d4e95023abff181c00acb21 |
.text |
798720 |
cf66190f2ce810cbe5a3597d78955f93 |
.text |
811008 |
03807d94d06acc2d46cbb056e85ac9b4 |
.text |
806912 |
ef1994d2a5b6b90db88564dd6b9e0dbd |
.text |
700416 |
ea7638e6005c7ac9174e5eb6c36f9599 |