How to remove wahiver.exe
- File Details
- Overview
- Analysis
wahiver.exe
The module wahiver.exe has been detected as Trojan.WaspAce
File Details
Product Name: |
|
Company Name: |
|
MD5: |
a1d1ba9934f68640f5c66f965966eec0 |
Size: |
5 MB |
First Published: |
2020-11-30 00:14:27 (3 years ago) |
Latest Published: |
2021-01-05 06:24:41 (3 years ago) |
Status: |
Trojan.WaspAce (on last analysis) |
|
Analysis Date: |
2021-01-05 06:24:41 (3 years ago) |
%windir%\inf\storagevservicedbs\0009\v3.5.56385\1049 |
%windir%\inf\storagevservicedbs\0009\v3.5.56385\1049 |
%windir%\inf\storagevservicedbs\0009\v3.5.56385\1049 |
Windows 10 |
57.1% |
|
Windows Server 2012 R2 |
28.6% |
|
Windows 7 |
14.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00dff0b0 |
Name |
Size of data |
MD5 |
|
858403 |
3f23f06f2b5331fe54d031d818ec677f |
|
4020 |
a3d46e6d260b58386622054ea9d068c4 |
|
38961 |
8eba4bc4f3b5bca4842cca407327d4a8 |
|
0 |
d41d8cd98f00b204e9800998ecf8427e |
|
1374 |
419bac0c304100aa6f19f7d12b7271b2 |
|
770 |
f22b9d04992c0b4fa03a2f62a4601bb9 |
|
356 |
ad1faae456a5d4207904e1d6cb4a25f0 |
|
0 |
d41d8cd98f00b204e9800998ecf8427e |
|
21 |
0c78ebc480d3996008080beddb9b46d2 |
|
0 |
d41d8cd98f00b204e9800998ecf8427e |
|
112294 |
425e75a5ae5e11413332a1c56d3e6896 |
|
1942926 |
a49b006f540b417910d71aef3396f642 |
.exports |
1024 |
fd0c27e815adc3aea3e52c396f9d7b50 |
.imports |
1024 |
51963ffea6a4173e70bbebfad076c661 |
.tls |
1024 |
6e68f6dc6384039312a06d1d72f5f99e |
.rsrc |
1024 |
5bc008ada3983f531aef28a7e49063cb |
.themida |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.boot |
2671273 |
885224c5101924736d0ed461a7d8242a |