How to remove kdu_v32R.dll
- File Details
- Overview
- Analysis
kdu_v32R.dll
The module kdu_v32R.dll has been detected as Worm.Ramnit
File Details
Product Name: |
|
Company Name: |
|
MD5: |
8a4ccd8bb65f1666a5813ace5051878a |
Size: |
648 KB |
First Published: |
2018-04-15 08:11:32 (6 years ago) |
Latest Published: |
2018-04-15 08:11:44 (6 years ago) |
Status: |
Worm.Ramnit (on last analysis) |
|
Analysis Date: |
2018-04-15 08:11:44 (6 years ago) |
%sysdrive%\กู้กู้งาน 240658\root\program files\yahoo! |
%sysdrive%\งานกู้ 240658\root\program files\yahoo! |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x604d0000 |
Entry Address: |
0x0007c000 |
Name |
Size of data |
MD5 |
.text |
360448 |
0e13e945ef94dbf6236cb34f945de6b2 |
.rdata |
102400 |
30b4c5c086f05eabcf2c18a956723185 |
.data |
8192 |
538a2c2075aadef046d64881e80fa8ed |
.rsrc |
4096 |
4498dc788f4e1dd11af4fd4b348a62f6 |
.reloc |
16384 |
45d9527cee5972b3852e08f89f33015c |
.text |
167936 |
cc9062cb346720d32738d0f426c9cce7 |