How to remove WeatherZeroService.exe
- File Details
- Overview
- Analysis
WeatherZeroService.exe
The module WeatherZeroService.exe has been detected as Backdoor.DCRat
File Details
MD5: |
c20c55750211e6d143f7cb1f31ed93f6 |
Size: |
3 MB |
First Published: |
2022-12-31 23:15:48 (2 years ago) |
Latest Published: |
2024-12-16 23:01:15 (5 days ago) |
Status: |
Backdoor.DCRat (on last analysis) |
|
Analysis Date: |
2024-12-16 23:01:15 (5 days ago) |
Overview
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
|
27.6% |
|
|
13.8% |
|
|
10.3% |
|
|
6.9% |
|
|
6.9% |
|
|
6.9% |
|
|
6.9% |
|
|
3.4% |
|
|
3.4% |
|
|
3.4% |
|
|
3.4% |
|
|
3.4% |
|
|
3.4% |
|
Windows 10 |
96.6% |
|
Windows 7 |
3.4% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000939b3 |
Name |
Size of data |
MD5 |
.text |
689664 |
48834dd3e3f7d2bde15802fd6c3b5748 |
.rdata |
57856 |
9f7f04845ea71ec60e8dccfdf14c471d |
.data |
2428416 |
9e089c7149666b1846f335f4641fffe3 |
.rsrc |
47616 |
e323c8b823ddbf1c04493d386914e4b4 |
.reloc |
12288 |
ae7ac52ddd319583542cf67de12acf0a |