How to remove d.exe
d.exe
The module d.exe has been detected as Trojan.Wacatac
File Details
| MD5: | 784f97b2fe3e5570a9af2b9f7370a23e |
| Size: | 508 KB |
| First Published: | 2020-01-22 21:16:57 (5 years ago) |
| Latest Published: | 2023-09-20 23:31:23 (2 years ago) |
| Status: | Trojan.Wacatac (on last analysis) | |
| Analysis Date: | 2023-09-20 23:31:23 (2 years ago) |
Common Places:
| %windir% |
| %windir% |
| %windir% |
| %windir% |
| %windir% |
| %windir% |
| %windir% |
| %windir% |
| %windir% |
| %windir% |
Geography:
| 13.0% | ||
| 9.4% | ||
| 7.0% | ||
| 4.3% | ||
| 4.0% | ||
| 4.0% | ||
| 3.7% | ||
| 3.3% | ||
| 3.3% | ||
| 3.0% | ||
| 2.7% | ||
| 2.3% | ||
| 2.0% | ||
| 2.0% | ||
| 1.7% | ||
| 1.7% | ||
| 1.7% | ||
| 1.7% | ||
| 1.7% | ||
| 1.7% | ||
| 1.3% | ||
| 1.0% | ||
| 1.0% | ||
| 1.0% | ||
| 1.0% | ||
| 1.0% | ||
| 1.0% | ||
| 1.0% | ||
| 1.0% | ||
| 1.0% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.3% | ||
| 0.3% | ||
| 0.3% | ||
| 0.3% | ||
| 0.3% | ||
| 0.3% | ||
| 0.3% | ||
| 0.3% | ||
| 0.3% | ||
| 0.3% | ||
| 0.3% | ||
| 0.3% | ||
| 0.3% | ||
| 0.3% | ||
| 0.3% | ||
| 0.3% | ||
| 0.3% | ||
| 0.3% | ||
| 0.3% | ||
| 0.3% |
OS Version:
| Windows 10 | 78.2% | |
| Windows 7 | 20.3% | |
| Windows 8.1 | 0.9% | |
| Windows 8 | 0.6% |
Analysis
| Subsystem: | Windows CUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x00038cb0 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 367104 | bfdc01d9c2bb7e15db434d5ae6760b83 |
| .rdata | 111616 | b58017ac950574cb7dfdc5b3ddd94100 |
| .data | 15872 | d5cd8dfff7a655f15c5c853be0f4aa2e |
| .rsrc | 512 | 5b005c249129c6a5b1fa0a8e8a6bce9e |
| .reloc | 24064 | 4f22098227e9b99de950ed77f8d2dadd |
More information:
Download GridinSoft
Anti-Malware - Removal tool for d.exe