How to remove wahiver.exe
- File Details
- Overview
- Analysis
wahiver.exe
The module wahiver.exe has been detected as Trojan.WaspAce
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
a1d1ba9934f68640f5c66f965966eec0 |
| Size: |
5 MB |
| First Published: |
2020-11-30 00:14:27 (5 years ago) |
| Latest Published: |
2021-01-05 06:24:41 (5 years ago) |
| Status: |
Trojan.WaspAce (on last analysis) |
|
| Analysis Date: |
2021-01-05 06:24:41 (5 years ago) |
| %windir%\inf\storagevservicedbs\0009\v3.5.56385\1049 |
| %windir%\inf\storagevservicedbs\0009\v3.5.56385\1049 |
| %windir%\inf\storagevservicedbs\0009\v3.5.56385\1049 |
| Windows 10 |
57.1% |
|
| Windows Server 2012 R2 |
28.6% |
|
| Windows 7 |
14.3% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x00dff0b0 |
| Name |
Size of data |
MD5 |
| |
858403 |
3f23f06f2b5331fe54d031d818ec677f |
| |
4020 |
a3d46e6d260b58386622054ea9d068c4 |
| |
38961 |
8eba4bc4f3b5bca4842cca407327d4a8 |
| |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| |
1374 |
419bac0c304100aa6f19f7d12b7271b2 |
| |
770 |
f22b9d04992c0b4fa03a2f62a4601bb9 |
| |
356 |
ad1faae456a5d4207904e1d6cb4a25f0 |
| |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| |
21 |
0c78ebc480d3996008080beddb9b46d2 |
| |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| |
112294 |
425e75a5ae5e11413332a1c56d3e6896 |
| |
1942926 |
a49b006f540b417910d71aef3396f642 |
| .exports |
1024 |
fd0c27e815adc3aea3e52c396f9d7b50 |
| .imports |
1024 |
51963ffea6a4173e70bbebfad076c661 |
| .tls |
1024 |
6e68f6dc6384039312a06d1d72f5f99e |
| .rsrc |
1024 |
5bc008ada3983f531aef28a7e49063cb |
| .themida |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .boot |
2671273 |
885224c5101924736d0ed461a7d8242a |