Gridinsoft Logo

Doom - ultimate.exe Trojan Wacatac Analysis

Trojan Wacatac
Updated on 2025-04-16 (14 days ago)
Checked by Online Virus Scanner
Online Virus Checker v.1.0.214.174
DB Version: 2025-04-16 01:00:16

Trojan.Win32.Wacatac.oa!s1

Wacatac is a type of malware that falls under the wide category of computer viruses. It is known for its malicious capabilities, which include data theft, system compromise, and the execution of additional malicious payloads on the infected system like ransomware.

File doom - ultimate.exe
Checked 2025-04-15 22:32:06
MD5 3112350a307977eb83ce93b8c63bfc8b
SHA1 f2541e9d3e57a445e197f40c7a7cde3ddd7f11dd
SHA256 2061ffa8521c1dd3e641ec66c88d181b18fcbe7dbebded8157294d7d3aeb53da
SHA512 182d4a7fcd070be381315966f10dc271a098fc2a3be6d48d8bce657f64a73d8ae79315e7ff25fa3e40dd6b0865e23515520f9220223a6d9c3edf9f9178caa343
Imphash 030fd5e09b262e0bdee910151a998a6e
File Size 45568 bytes

Trojan.Win32.Wacatac.oa!s1 Removal

Trojan.Win32.Wacatac.oa!s1 Removal

Gridinsoft has the capability to identify and eliminate Trojan.Win32.Wacatac.oa!s1 without requiring further user intervention.

  • Start by downloading Gridinsoft Anti-Malware to your computer.
  • Double-click on the gsam-en-install.exe file and follow the on-screen instructions to install the program.
  • Once the installation of Gridinsoft Anti-Malware is complete, the program will open on the Scan screen.
  • Click on the "Standard Scan" button.
  • After the scanning process is finished, click on "Clean Now" to remove any detected threats.
  • If prompted, restart your system to complete the removal process.

Portable Executable Info

9fc45ef49add9a4448d208f85b0cbdf5
64876120eb34903742941c218869dbd4
f0f8e8e8e0c8c8f0
Image Base: 0x00400000
Entry Point: 0x00401000
Compilation: 2014-07-13 12:38:30
Checksum: 0x00000000 (Actual: 0x00015fb3)
OS Version: 4.0
PEiD: PE32 executable (GUI) Intel 80386, for MS Windows
Sign: No valid SignedData structure was found.
Sections: 5
Imports: MSVCRT, KERNEL32, COMCTL32, USER32, GDI32, OLE32, SHELL32, SHLWAPI,
Exports: 0
Resources: 7

Sections

Name Virtual Address Virtual Size Raw Size MD5 Entropy
.code 0x00001000 0x000017b7 0x00001800 236dd250e607c391ab78126d5ec4f42f 5.51
.text 0x00003000 0x000052c1 0x00005400 65ab742fc50e5ff58249a5da78171877 6.55
.rdata 0x00009000 0x00000502 0x00000600 06c543e046ff96bd897b829fdfb7e926 6.86
.data 0x0000a000 0x000012f8 0x00001000 75178665b72fa9a9ddf7c04ab25dc8c6 4.93
.rsrc 0x0000c000 0x00002a5c 0x00002c00 62b394220f727b9e0d0a3203bc1050ec 5.57

Leave a comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware