How to remove remcmdstub.exe
- File Details
- Overview
- Analysis
remcmdstub.exe
The module remcmdstub.exe has been detected as Trojan.Wacatac
File Details
Product Name: |
|
Company Name: |
|
MD5: |
5be6fb8f28544d4f83c25a2b76ff7890 |
Size: |
58 KB |
First Published: |
2024-09-24 23:02:24 (8 months ago) |
Latest Published: |
2025-05-14 23:00:59 (2 weeks ago) |
Status: |
Trojan.Wacatac (on last analysis) |
|
Analysis Date: |
2025-05-14 23:00:59 (2 weeks ago) |
Overview
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
|
18.2% |
|
|
18.2% |
|
|
18.2% |
|
|
9.1% |
|
|
9.1% |
|
|
9.1% |
|
|
9.1% |
|
|
9.1% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000021b4 |
Name |
Size of data |
MD5 |
.text |
33280 |
d7e8b34cad4813ce8d64f941030adaa4 |
.rdata |
9728 |
50232bdd36639b3c331c53b69e78bf62 |
.data |
3584 |
4132e810625f1caf17538a533e4d9bc3 |
.rsrc |
2048 |
aaa04a8bc1824cb1add0a1500a01784c |
.reloc |
3584 |
417fbf698b053cd26009b1064a88c8ea |