addendum.dll
The library addendum.dll has been detected as malware by 25 anti-virus scanners. According to the AV engines that detect this, it is a detection for a file infected by members of the Win32/Ramnit malware family and may drop and load other malware.
MD5:
080eaf7daaa8da6610bb33693fff6803
SHA-1:
fc7a58b6a46e4f385cc127a0e3636bc64002d963
SHA-256:
7d1a895b03ba3735e42077d74984057f2947c0600aefef47f48b31a0aaa218bf
Scanner detections:
25 / 68
Status:
File is infected by a Virus
Explanation:
The file is infected by a polymorphic file infector virus.
Analysis date:
3/28/2024 10:23:44 AM UTC (today)
Scan engine
Detection
Engine version
Lavasoft Ad-Aware
Win32.Ramnit
827
AegisLab AV Signature
W32.Nimnul
2.1.4+
Agnitum Outpost
Win32.Ramnit.Gen
7.1.1
Avira AntiVirus
W32/Ramnit.A
7.11.30.172
avast!
Win32:Ramnit-G
141025-0
AVG
Win32/Ramnit.A
2014.0.4189
Bitdefender
Win32.Ramnit
1.0.20.1520
Bkav FE
HW32.Packed
1.3.0.6185
Emsisoft Anti-Malware
Win32.Ramnit
14.10.30
Fortinet FortiGate
W32/Ramnit.A
10/31/2014
F-Secure
Win32.Ramnit
11.2014-31-10_6
G Data
Win32.Ramnit
14.10.24
IKARUS anti.virus
Virus.Win32.Ramnit
t3scan.1.8.3.0
McAfee
W32/Ramnit.a
5600.6961
Microsoft Security Essentials
Threat.Undefined
1.187.957.0
MicroWorld eScan
Win32.Ramnit
15.0.0.912
NANO AntiVirus
Virus.Win32.Nimnul.bpchjo
0.28.6.62995
Norman
Ramnit.ANDF
11.20141031
nProtect
Win32.Ramnit
14.10.30.01
Qihoo 360 Security
Malware.QVM39.Gen
1.0.0.1015
Quick Heal
W32.Ramnit.D
10.14.14.00
Trend Micro House Call
PE_RAMNIT.DAM
7.2.304
Trend Micro
PE_RAMNIT.DAM
10.465.31
VIPRE Antivirus
Threat.4726526
34232
File size:
132.5 KB (135,680 bytes)
File type:
Dynamic link library (Win32 DLL)
Compilation timestamp:
6/24/2014 8:20:58 AM
CTPH (ssdeep):
3072:Mt6CBL0lYTnf185Jssss9eX9ZD0K/OE7ANmpYUqoaQCo4x4/mBKjfF:MEVYTn65reX990K2E7ANmpYUq+Co4SmB
Code size:
33 KB (33,792 bytes)