How to remove PreInst.exe
- File Details
- Overview
- Analysis
PreInst.exe
The module PreInst.exe has been detected as Worm.Ramnit
File Details
Product Name: |
|
Company Name: |
|
MD5: |
654daf43d56c3b7dca41242bc35bec18 |
Size: |
120 KB |
First Published: |
2017-08-21 12:02:02 (7 years ago) |
Latest Published: |
2017-08-21 12:02:02 (7 years ago) |
Status: |
Worm.Ramnit (on last analysis) |
|
Analysis Date: |
2017-08-21 12:02:02 (7 years ago) |
%programfiles%\vodafone\vodafone mobile connect\bin |
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00006000 |
Name |
Size of data |
MD5 |
.text |
4096 |
d5e962f23c08b9ac8163770a5f21a7ac |
.rdata |
3584 |
cc69df8dc4721b6a786a6caea14ebc4d |
.data |
512 |
e2b23683a8b8935f281d74e560c5fad8 |
.rsrc |
2048 |
b071ba9f551b698d651b0d3132a439fe |
.reloc |
1024 |
eb3b668795cd2513f9025be1e363ed74 |
.text |
110592 |
9dd47ea301be1c1318678d5e1963a09c |