How to remove installer_x86.exe
- File Details
- Overview
- Analysis
installer_x86.exe
The module installer_x86.exe has been detected as Worm.Ramnit
File Details
MD5: |
0ceb426a189dd88d72838dcc5497a9b8 |
Size: |
159 KB |
First Published: |
2017-05-24 14:04:11 (7 years ago) |
Latest Published: |
2017-05-24 14:04:11 (7 years ago) |
Status: |
Worm.Ramnit (on last analysis) |
|
Analysis Date: |
2017-05-24 14:04:11 (7 years ago) |
%desktop%\volcano\coolsand usbdrivers |
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x01000000 |
Entry Address: |
0x00008000 |
Name |
Size of data |
MD5 |
.text |
19456 |
b62f66075d0f8ffdd74cb68058764a05 |
.data |
1024 |
77532edd6a3353658bba4acce70368ee |
.reloc |
2048 |
5c323b85cc25ed3b52f49b10fa961bae |
.text |
139264 |
487319c9559c67121668903cc96f7667 |