How to remove weatherzeroservice.exe
- File Details
- Overview
- Analysis
weatherzeroservice.exe
The module weatherzeroservice.exe has been detected as Backdoor.DCRat
File Details
Product Name: |
|
Company Name: |
|
MD5: |
2b149ba4c21c66d34f19214d5a8d3067 |
Size: |
3 MB |
First Published: |
2023-08-01 23:07:14 (a year ago) |
Latest Published: |
2024-11-20 23:01:39 (10 hours ago) |
Status: |
Backdoor.DCRat (on last analysis) |
|
Analysis Date: |
2024-11-20 23:01:39 (10 hours ago) |
Overview
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
|
23.9% |
|
|
17.4% |
|
|
13.0% |
|
|
10.9% |
|
|
8.7% |
|
|
6.5% |
|
|
4.3% |
|
|
4.3% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0008d7b3 |
Name |
Size of data |
MD5 |
.text |
665088 |
ced0a940bbc50dcfd13266ea767e4720 |
.rdata |
58880 |
5b1f9132b0e779f7e0e4175cbd096b2b |
.data |
2578432 |
93dc02db8b24bc2e2cbe8324228772cb |
.rsrc |
47616 |
eb2484c1c8a30e4b2d3b1a08a7641585 |
.reloc |
11776 |
e515ae335ed80f0dfe29aa330d567666 |