How to remove OfficeTrackerNMP1.exe
- File Details
- Overview
- Analysis
OfficeTrackerNMP1.exe
The module OfficeTrackerNMP1.exe has been detected as Trojan.Wacatac
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
3e40919e6f2125376062b90cb8b9f669 |
| Size: |
5 MB |
| First Published: |
2023-11-20 23:36:06 (2 years ago) |
| Latest Published: |
2024-02-24 23:39:46 (2 years ago) |
| Status: |
Trojan.Wacatac (on last analysis) |
|
| Analysis Date: |
2024-02-24 23:39:46 (2 years ago) |
Overview
| %commonappdata% |
| %localappdata% |
| %commonappdata% |
| %commonappdata% |
| %temp% |
| %localappdata% |
| %commonappdata% |
| %commonappdata% |
| %localappdata% |
| %temp% |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x00a46a92 |
| Name |
Size of data |
MD5 |
| |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .idata |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| ./PING/0 |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .themida |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .boot |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| ./PING/1 |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| ./PING/2 |
1024 |
1effa04b58fb964aad40c705c6a2db30 |
| ./PING/3 |
5692928 |
9cad33e6be476003d6779149cdac841c |
| .reloc |
7168 |
38e37dfab4e9543ee03e546cc90d2b82 |
| .rsrc |
101888 |
0acd6b16e49b5ebe896605c6879ee319 |