How to remove TMultiBrand.exe
- File Details
- Overview
- Analysis
TMultiBrand.exe
The module TMultiBrand.exe has been detected as Worm.Ramnit
File Details
MD5: |
59c75795e4492f03913f22a2be6b17cc |
Size: |
2 MB |
First Published: |
2017-05-24 14:04:10 (7 years ago) |
Latest Published: |
2017-05-24 15:05:35 (7 years ago) |
Status: |
Worm.Ramnit (on last analysis) |
|
Analysis Date: |
2017-05-24 15:05:35 (7 years ago) |
%desktop%\merpai\merapi tool_1.4.7_20160313\multibrand |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x002c5000 |
Name |
Size of data |
MD5 |
.text |
2044928 |
6320503ca69d3949379d6b988a11a4cc |
.data |
52736 |
348262f124051e44813144701275bfdf |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rdata |
512 |
0fd64218261cc77eddd44da6d9a8c155 |
.idata |
13824 |
7245e2ec4c3e3dc2d8c8a5f132846857 |
.edata |
228352 |
d837885a301bc0c759b952a006817b13 |
.rsrc |
425984 |
e07eb672f880a550fe4e951dd83ef65c |
.reloc |
97792 |
1f42fc06ebaeb1eb3640c030cbedbf62 |
.text |
139264 |
28de8f813093a8032829708ff3d74b3a |