How to remove wzupdate.exe

wzupdate.exe

The module wzupdate.exe has been detected as Backdoor.DCRat

wzupdate.exe
Product Name:

WeatherZero

MD5: 87a407b05693014bc05eb269fcd995ed
Size: 10 MB
First Published: 2025-04-26 23:01:09 (a month ago)
Latest Published: 2025-05-12 23:01:22 (3 weeks ago)
Status: Backdoor.DCRat (on last analysis)
Analysis Date: 2025-05-12 23:01:22 (3 weeks ago)
Signed By: Sanem Digital Limited
Status: Valid
%programfiles%
%programfiles%
100.0%
Windows 10 100.0%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x0103a058

PE Sections:

Name Size of data MD5
19456 2b5edd0dec419be0c92715e0e574c0f1
1536 ca2483c41b845dc161cf80f4bf6de545
512 329f09e9466fcfcf3c920c0a14d593fc
.ndata 0 d41d8cd98f00b204e9800998ecf8427e
8601600 fd83010dfc2c663721c7c03484a15095
.idata 512 416682ef238eb57b344aeca1a0d1d0cc
.rsrc 148480 b64981d67cdf9fd7456df23185b8a6f2
.themida 0 d41d8cd98f00b204e9800998ecf8427e
.boot 2496000 95315ae921c2d7a36a2515150c48b53c
32768 0e4fc8b52487604ee02f1a1833eea43f

More information:

Download GridinSoft Anti-Malware - Removal tool for wzupdate.exe