How to remove FSB_TD.exe
FSB_TD.exe
The module FSB_TD.exe has been detected as Worm.Ramnit
File Details
Product Name: | Wondershare Theme Designer |
Company Name: | Wondershare software Co.,Ltd. |
MD5: | 2e99eefe1088e6508b2b06670e702ecc |
Size: | 3 MB |
First Published: | 2018-04-15 08:11:46 (6 years ago) |
Latest Published: | 2018-04-15 08:11:46 (6 years ago) |
Status: | Worm.Ramnit (on last analysis) | |
Analysis Date: | 2018-04-15 08:11:46 (6 years ago) |
Common Places:
%sysdrive%\งานกู้ 240658\root\program files\wondershare |
Geography:
100.0% |
OS Version:
Windows XP | 100.0% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x00324000 |
PE Sections:
Name | Size of data | MD5 |
CODE | 1228288 | c263459dc139e06f030fe4e0abfce4b4 |
DATA | 13312 | a8405220a9b622c2380f8746770c9570 |
BSS | 0 | 00000000000000000000000000000000 |
.idata | 14336 | 75191f8f2dc6713ede2acfdfaf2a76d4 |
.tls | 0 | 00000000000000000000000000000000 |
.rdata | 512 | b855cf1ed26237cd2123c66e1693221b |
.reloc | 73728 | 1c9ae3a4bc232c2a2e62670c5f20d133 |
.rsrc | 1345536 | 0776fbc0ca89c6c144005215d09e6511 |
.DDATA | 20480 | 90d49dadb7309c51a7769657f97cb0aa |
.text | 186880 | 54556b658227b5fc8420cf828eb7ce68 |
.text | 186880 | c36f0181423996c779ff100d9a328cec |
.text | 186880 | b3647dfb18d4f83e0c9e8205330342df |
.text | 166400 | 437227491541c92b3ad9e4b9cc94837b |
More information:
Download GridinSoft
Anti-Malware - Removal tool for FSB_TD.exe