How to remove nekopara_vol1.exe
- File Details
- Overview
- Analysis
nekopara_vol1.exe
The module nekopara_vol1.exe has been detected as Worm.Ramnit
File Details
Product Name: |
|
MD5: |
2b409fa592bc2af2aa1889f2db4ec4c1 |
Size: |
3 MB |
First Published: |
2018-05-10 18:04:17 (6 years ago) |
Latest Published: |
2018-05-10 18:04:17 (6 years ago) |
Status: |
Worm.Ramnit (on last analysis) |
|
Analysis Date: |
2018-05-10 18:04:17 (6 years ago) |
%sysdrive%\do not enter zzzz\hmm\vn |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00480000 |
Name |
Size of data |
MD5 |
.text |
2849792 |
c7217987b96aa358f911d3e72f6efd16 |
.adata |
1536 |
ce5c65b9146cbe17bc2ce5e0e88dce96 |
.rdata |
701440 |
cc2de308e489965be8ee80b7d672f64c |
.data |
41472 |
70e3c5bdb0f0bc17255717ad7cbf2566 |
.rsrc |
258560 |
1208816cd3383fa1675bbffe92b51213 |
.reloc |
192000 |
29e9a7ac1d4db9378b800bbbe3a91ddf |
.text |
99840 |
506c5384ffcf506b224d971f1f18dd21 |