How to remove wmsetsdk.exe
- File Details
- Overview
- Analysis
wmsetsdk.exe
The module wmsetsdk.exe has been detected as Worm.Ramnit
File Details
Product Name: |
|
Company Name: |
|
MD5: |
8669ada2543d5ca0f8f067fc92ff5611 |
Size: |
1 MB |
First Published: |
2018-04-15 08:11:51 (6 years ago) |
Latest Published: |
2018-04-15 08:11:51 (6 years ago) |
Status: |
Worm.Ramnit (on last analysis) |
|
Analysis Date: |
2018-04-15 08:11:51 (6 years ago) |
%sysdrive%\งานกู้ 240658\root\windows |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x01000000 |
Entry Address: |
0x00159000 |
Name |
Size of data |
MD5 |
.text |
307200 |
41e195dea0f8060276c4c8a0a97e5c98 |
.data |
12288 |
f2a71c57c0d77d108904c3d4021cc5b8 |
.rsrc |
495616 |
14d8901d774a191f3d1a2787ffa5a5e7 |
.kdata |
20480 |
674bbde6ba4b104b9abc72d8f39f614c |
.text |
188416 |
9f316532530192e2178b60b5a3a3ecf6 |
.text |
188416 |
9e7d0e3e9428ab0ef06a8339189ae953 |
.text |
188416 |
a7be984e0b2675c1e9dced6db5ba9825 |
.text |
167936 |
1b9f7208f81352e4b86a89499ff903a9 |