How to remove wzupdate.exe
- File Details
- Overview
- Analysis
wzupdate.exe
The module wzupdate.exe has been detected as Backdoor.DCRat
File Details
Product Name: |
|
MD5: |
c362809aafe5711c5993743cf464b189 |
Size: |
10 MB |
First Published: |
2024-08-21 23:13:31 (6 months ago) |
Latest Published: |
2024-08-28 23:01:26 (6 months ago) |
Status: |
Backdoor.DCRat (on last analysis) |
|
Analysis Date: |
2024-08-28 23:01:26 (6 months ago) |
Overview
%programfiles% |
%programfiles% |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0103a058 |
Name |
Size of data |
MD5 |
|
19456 |
1792cafcfee973cc7e2947aef44cf006 |
|
1536 |
8643ca08eac77b2c0443b12ccb70fd62 |
|
512 |
65afe965c1713e9ccd2087e6e87eef21 |
.ndata |
0 |
d41d8cd98f00b204e9800998ecf8427e |
|
8601600 |
a2127e860a925e656dfd90a32322eb40 |
.idata |
512 |
416682ef238eb57b344aeca1a0d1d0cc |
.rsrc |
148480 |
b64981d67cdf9fd7456df23185b8a6f2 |
.themida |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.boot |
2496512 |
efe35b7032a8ea597228c446a5dc7c51 |
|
32768 |
0e4fc8b52487604ee02f1a1833eea43f |