How to remove OXWU.exe
OXWU.exe
The module OXWU.exe has been detected as Worm.Ramnit
File Details
Product Name: | 地牛Wake Up! |
Company Name: | 地牛Wake Up! |
MD5: | 5d2279f3684144fe9a7a19324176090e |
Size: | 61 MB |
First Published: | 2018-08-22 14:13:58 (6 years ago) |
Latest Published: | 2018-08-22 14:14:52 (6 years ago) |
Status: | Worm.Ramnit (on last analysis) | |
Analysis Date: | 2018-08-22 14:14:52 (6 years ago) |
Common Places:
%localappdata%\oxwu |
Geography:
100.0% |
OS Version:
Windows 7 | 100.0% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x03d5a000 |
PE Sections:
Name | Size of data | MD5 |
.text | 52974080 | 47e9c7fa3dbd2cd44e8346e2b2317c6c |
.rdata | 8695808 | 52f6dc537b4c85e2c1623202bfb6a4e1 |
.data | 467968 | 774251d274bea6512b0773d4f4492cb6 |
.rodata | 4096 | fa2e91f6e50ab966c9b89bfab577967c |
.tls | 512 | 9efa43af7b1faae15ffbd428d0485819 |
.gfids | 3072 | 19ca30b6ba40628c3643d8f213984bef |
_RDATA | 7168 | 0b2db3b1fab12fdb181510a4a0675766 |
.rsrc | 80384 | 6c48059a6eb328d13da3b8ad4d42f4a0 |
.reloc | 1805824 | 53f08a8316d65b3c6c5f14191757738f |
.text | 110592 | b2ffee2aa92d540a266c52fd91d1b60f |
More information:
Download GridinSoft
Anti-Malware - Removal tool for OXWU.exe