How to remove WinSnare.dll
- File Details
- Overview
- Analysis
WinSnare.dll
The module WinSnare.dll has been detected as Virus.Ramnit
File Details
Product Name: |
|
Company Name: |
|
MD5: |
3871b1f0ed49caaa2dfa9d5aa78e61de |
Size: |
980 KB |
First Published: |
2017-05-25 02:04:17 (7 years ago) |
Latest Published: |
2018-10-31 14:12:34 (6 years ago) |
Status: |
Virus.Ramnit (on last analysis) |
|
Analysis Date: |
2018-10-31 14:12:34 (6 years ago) |
%appdata%\winsnare |
%temp%\hpc406.tmp |
%temp%\hpb9aa.tmp |
%temp%\hpad9a.tmp |
%windir%\temp\nsi2df2.tmp |
%temp%\hp22bf.tmp |
%windir%\temp\nsifad2.tmp |
%windir%\temp\tmp2ca4.tmp |
%windir%\temp\nsi2bc9.tmp |
%temp%\hp4dcf.tmp |
_reboot_WinSnare.dll |
WinSnare.dll |
|
37.7% |
|
|
13.0% |
|
|
11.7% |
|
|
10.4% |
|
|
7.8% |
|
|
3.9% |
|
|
2.6% |
|
|
2.6% |
|
|
2.6% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
Windows 7 |
85.4% |
|
Windows 10 |
4.9% |
|
Windows 8 |
3.7% |
|
Windows Server 2012 R2 |
3.7% |
|
Windows 8.1 |
2.4% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x10000000 |
Entry Address: |
0x00022c24 |
Name |
Size of data |
MD5 |
.text |
582656 |
a987757bf4ccdc2575232a672816e075 |
.rdata |
171008 |
36660860958c5919e96d290fee678e21 |
.data |
16384 |
035085cd47844544e0bcfb64e43f003a |
.rsrc |
1536 |
7f2214b5e832f2f693f3b7dd05485443 |
.reloc |
32256 |
f120881958be313904c9d989dc73d911 |