How to remove RMEncoder.exe
- File Details
- Overview
- Analysis
RMEncoder.exe
The module RMEncoder.exe has been detected as Worm.Ramnit
File Details
Product Name: |
|
Company Name: |
|
MD5: |
4d8e1c5ec42e83a34b4592c1f853c2d4 |
Size: |
228 KB |
First Published: |
2017-07-22 13:12:04 (7 years ago) |
Latest Published: |
2017-07-22 13:12:04 (7 years ago) |
Status: |
Worm.Ramnit (on last analysis) |
|
Analysis Date: |
2017-07-22 13:12:04 (7 years ago) |
%programfiles%\freetime\formatfactory\ffmodules |
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0002f000 |
Name |
Size of data |
MD5 |
.text |
104448 |
511f991211f5ae8a4629bb6aee7b7aa0 |
.rdata |
16384 |
6907bea523d09e8d5037183f21e1d040 |
.data |
6144 |
af5d62f94380808d5313007819e0d965 |
.rsrc |
33792 |
3f09155ab0bf681806f6c1be13086782 |
.reloc |
7680 |
5d43a8b9245883c5bfe513a776d77c40 |
.text |
64000 |
44d5fdf8e85ceed300d35c26b3c40af8 |