How to remove weatherzeroservice.exe
- File Details
- Overview
- Analysis
weatherzeroservice.exe
The module weatherzeroservice.exe has been detected as Backdoor.DCRat
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
2b149ba4c21c66d34f19214d5a8d3067 |
| Size: |
3 MB |
| First Published: |
2023-08-01 23:07:14 (2 years ago) |
| Latest Published: |
2026-01-05 23:06:19 (2 days ago) |
| Status: |
Backdoor.DCRat (on last analysis) |
|
| Analysis Date: |
2026-01-05 23:06:19 (2 days ago) |
Overview
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
|
17.4% |
|
|
15.9% |
|
|
12.9% |
|
|
8.3% |
|
|
7.6% |
|
|
6.8% |
|
|
6.8% |
|
|
5.3% |
|
|
4.5% |
|
|
3.0% |
|
|
3.0% |
|
|
3.0% |
|
|
2.3% |
|
|
1.5% |
|
|
0.8% |
|
|
0.8% |
|
| Windows 10 |
98.5% |
|
| Windows 8.1 |
1.5% |
|
Analysis
| Subsystem: |
Windows CUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x0008d7b3 |
| Name |
Size of data |
MD5 |
| .text |
665088 |
ced0a940bbc50dcfd13266ea767e4720 |
| .rdata |
58880 |
5b1f9132b0e779f7e0e4175cbd096b2b |
| .data |
2578432 |
93dc02db8b24bc2e2cbe8324228772cb |
| .rsrc |
47616 |
eb2484c1c8a30e4b2d3b1a08a7641585 |
| .reloc |
11776 |
e515ae335ed80f0dfe29aa330d567666 |