How to remove OfficeTrackerNMP1.exe
- File Details
- Overview
- Analysis
OfficeTrackerNMP1.exe
The module OfficeTrackerNMP1.exe has been detected as Trojan.Wacatac
File Details
Product Name: |
|
Company Name: |
|
MD5: |
3e40919e6f2125376062b90cb8b9f669 |
Size: |
5 MB |
First Published: |
2023-11-20 23:36:06 (a year ago) |
Latest Published: |
2024-02-24 23:39:46 (11 months ago) |
Status: |
Trojan.Wacatac (on last analysis) |
|
Analysis Date: |
2024-02-24 23:39:46 (11 months ago) |
Overview
%commonappdata% |
%localappdata% |
%commonappdata% |
%commonappdata% |
%temp% |
%localappdata% |
%commonappdata% |
%commonappdata% |
%localappdata% |
%temp% |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00a46a92 |
Name |
Size of data |
MD5 |
|
0 |
d41d8cd98f00b204e9800998ecf8427e |
|
0 |
d41d8cd98f00b204e9800998ecf8427e |
|
0 |
d41d8cd98f00b204e9800998ecf8427e |
|
0 |
d41d8cd98f00b204e9800998ecf8427e |
|
0 |
d41d8cd98f00b204e9800998ecf8427e |
.idata |
0 |
d41d8cd98f00b204e9800998ecf8427e |
./PING/0 |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.themida |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.boot |
0 |
d41d8cd98f00b204e9800998ecf8427e |
./PING/1 |
0 |
d41d8cd98f00b204e9800998ecf8427e |
./PING/2 |
1024 |
1effa04b58fb964aad40c705c6a2db30 |
./PING/3 |
5692928 |
9cad33e6be476003d6779149cdac841c |
.reloc |
7168 |
38e37dfab4e9543ee03e546cc90d2b82 |
.rsrc |
101888 |
0acd6b16e49b5ebe896605c6879ee319 |