How to remove MS4PHA.DLL
MS4PHA.DLL
The module MS4PHA.DLL has been detected as Worm.Ramnit
File Details
| Product Name: | Canon MasterSetup support DLL |
| Company Name: | CANON INC. |
| MD5: | 66f4fe6e4fbde49f15651257b7e363d0 |
| Size: | 156 KB |
| First Published: | 2021-01-09 11:48:58 (4 years ago) |
| Latest Published: | 2021-01-09 11:48:58 (4 years ago) |
| Status: | Worm.Ramnit (on last analysis) | |
| Analysis Date: | 2021-01-09 11:48:58 (4 years ago) |
Common Places:
| %sysdrive%\new folder (4)\new folder\master\canon_ij (g)\res\cms_lib |
Geography:
| 100.0% |
OS Version:
| Windows 7 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x10000000 |
| Entry Address: | 0x0000d000 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 20480 | b3b6c242e0bcde928377e865c8bc69dd |
| .rdata | 4096 | 4ceb27271e968d68fc365251e3d27fa8 |
| .data | 12288 | 2e6bce9b222da756ac9a8bf088142263 |
| .rsrc | 4096 | b634e0a55387fe586a7f9a4fda059bce |
| .reloc | 4096 | ffd7447dd725a767c761ff598e32a089 |
| .text | 110592 | e28d0724f864e0b6b6b46165061d489a |
More information:
Download GridinSoft
Anti-Malware - Removal tool for MS4PHA.DLL