How to remove ymsgip.dll
ymsgip.dll
The module ymsgip.dll has been detected as Worm.Ramnit
File Details
Product Name: | Yahoo! Messenger |
Company Name: | Yahoo! Inc. |
MD5: | 434d804f252fe1775f8e196c6877ba31 |
Size: | 188 KB |
First Published: | 2017-12-08 09:08:35 (7 years ago) |
Latest Published: | 2017-12-08 09:08:35 (7 years ago) |
Status: | Worm.Ramnit (on last analysis) | |
Analysis Date: | 2017-12-08 09:08:35 (7 years ago) |
Common Places:
%sysdrive%\yahoo! |
Geography:
100.0% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x60f70000 |
Entry Address: | 0x0001f000 |
PE Sections:
Name | Size of data | MD5 |
.text | 65536 | 72828c87d9fd0f4e20c8dfd153bfed8c |
.rdata | 20480 | 07f48c4e1f43c2b1432d984e2da1ae83 |
.data | 4096 | 6ae0893715916cb80b82b8ee199ebfb3 |
.rsrc | 24576 | 7fcd514db974ae7c4459879f42f407f0 |
.reloc | 8192 | 259041922ffb0ac428f47b9f70b605e1 |
.text | 65536 | 8fcfa150f9e4a1bd71e4c182fbed77c6 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for ymsgip.dll