How to remove 7T8CQXGDVK40RG9BV0FVDOCFRO.exe
- File Details
- Overview
- Analysis
7T8CQXGDVK40RG9BV0FVDOCFRO.exe
The module 7T8CQXGDVK40RG9BV0FVDOCFRO.exe has been detected as Trojan.Wacatac
File Details
Product Name: |
|
Company Name: |
|
MD5: |
432a2b4e4f2d7a9c640e79328ea9d8b8 |
Size: |
5 MB |
First Published: |
2024-03-03 23:09:37 (a year ago) |
Latest Published: |
2025-01-07 23:06:40 (6 months ago) |
Status: |
Trojan.Wacatac (on last analysis) |
|
Analysis Date: |
2025-01-07 23:06:40 (6 months ago) |
Overview
Signed By: |
Balena Inc |
Status: |
Invalid (digital signature could be stolen or file could be patched) |
%temp% |
%appdata% |
%temp% |
%appdata% |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000671ba |
Name |
Size of data |
MD5 |
.text |
529920 |
88b3afdc8da613e111f9ad6e82ff5ed9 |
.rdata |
468992 |
28a4a1e88b41130def6892e3e24fcc24 |
.data |
9728 |
5448ca360a165efdad01918063313921 |
.trace |
7168 |
d382a740743ee54925618144c91eb2ac |
.gfids |
512 |
842fe421c41b24739930a52a6d444a30 |
_RDATA |
1536 |
8374d83220ce554b3ff1e071f1c195cf |
.debug_o |
68096 |
9f63cf1bdefe66c8b3cb931c21e24d6e |
.rsrc |
547328 |
005716baea9e29b781b1e6be81b4e4a2 |
.reloc |
26624 |
a47afc60533987f31ea571fc7d5d334b |