How to remove PSF_PackagePrepare.dll
- File Details
- Overview
- Analysis
PSF_PackagePrepare.dll
The module PSF_PackagePrepare.dll has been detected as Worm.Ramnit
File Details
MD5: |
7ab264b10105cb23a34cc3d547b59e08 |
Size: |
302 KB |
First Published: |
2017-05-24 14:04:11 (7 years ago) |
Latest Published: |
2017-05-24 15:05:35 (7 years ago) |
Status: |
Worm.Ramnit (on last analysis) |
|
Analysis Date: |
2017-05-24 15:05:35 (7 years ago) |
%desktop%\merpai\merapi tool_1.4.7_20160313\factorytool |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00033000 |
Name |
Size of data |
MD5 |
.text |
132608 |
d23557f5607c506e87c4b27da99f94c1 |
.data |
17920 |
145b3e1aa85d914ce5ab74d258ec32f0 |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.idata |
2560 |
3beb0b666a9a0272d7ba5e3188886f9e |
.edata |
512 |
231f4d6cbf6e2b1f425df0acd9ff839a |
.rsrc |
4608 |
f56e02bd233db030be7f7552310e997b |
.reloc |
9728 |
0d99844cfc0956f84a6beb2fd5bac269 |
.text |
139264 |
e78f0c3d4530ee2a453e4019446f79a1 |