How to remove wahiver.exe
- File Details
- Overview
- Analysis
wahiver.exe
The module wahiver.exe has been detected as PUP.Wasppacer
File Details
Product Name: |
|
Company Name: |
|
MD5: |
0be0f6855b9b36408caebd61a008b98b |
Size: |
9 MB |
First Published: |
2019-11-26 09:59:47 (4 years ago) |
Latest Published: |
2020-07-15 22:19:27 (4 years ago) |
Status: |
PUP.Wasppacer (on last analysis) |
|
Analysis Date: |
2020-07-15 22:19:27 (4 years ago) |
%windir%\inf\storagewmi\0009\v3.5.56385\1049 |
%windir%\inf\storagevservice\0009\v3.5.56385\1049 |
Windows Server 2008 R2 |
100.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00208bf0 |
Name |
Size of data |
MD5 |
.text |
2119680 |
390bb620a401337aa743305ea87a339f |
.itext |
7680 |
344cc8238b4be964e9741572ccf9848a |
.data |
81408 |
8c106d10a8cc5bb8a81cee2fd95560ca |
.bss |
0 |
00000000000000000000000000000000 |
.idata |
18432 |
2c4a32a84c16353709b2fb98e947776f |
.didata |
2560 |
a9f62d7eb6f33a7594c5f1d751f6a282 |
.edata |
1024 |
85d7a1c568d6532a463d54fa7d447486 |
.tls |
0 |
00000000000000000000000000000000 |
.rdata |
512 |
2472345424e6ae3a2e7e9f6da22f7e22 |
.reloc |
0 |
00000000000000000000000000000000 |
.rsrc |
132608 |
f6aeaf25292e62d20dd524d24a7372e9 |
.debug |
7566848 |
7da36890377a4e7f662bc4dcf826ef95 |