Online Virus Checker | v.1.0.182.174 |
DB Version: | 2024-07-14 19:00:19 |
Wacatac is a type of malware that falls under the wide category of computer viruses. It is known for its malicious capabilities, which include data theft, system compromise, and the execution of additional malicious payloads on the infected system like ransomware.
File | setup.exe |
Checked | 2024-07-14 16:40:38 |
MD5 | 8f41bd62a8a854a0d9a6725778537ce9 |
SHA1 | bcda14deb1e4b1d418fa332003df727b1ca5f164 |
SHA256 | b91675570f1f020bd5f4685bf892e8ba6f79b4c63efb1c393b3ea316ed56007a |
SHA512 | b56b668134f40f072d423cf08616c30742e173bfb20726049d073710ce45f6ef1ba6fa93cab394fe85a41310c3d5af302ca9a8d5cf2c582addd1052f5d72d2f9 |
Imphash | 884310b1928934402ea6fec1dbd3cf5e |
File Size | 1342032 bytes |
Gridinsoft has the capability to identify and eliminate Ransom.Win32.Wacatac.cl without requiring further user intervention.
Comments | This installation was built with Inno Setup. |
CompanyName | FreeTP.Org |
FileDescription | Raft |
FileVersion | |
LegalCopyright | © FreeTP.Org |
ProductName | Raft |
ProductVersion | |
Translation | 0x0000 0x04b0 |
60adad80b6f98d9774bffc6acdc0398f e2145748fb45ea37bc65094a74cc9884 f0f0ea29a9f2fc71 |
|
Image Base: | 0x00400000 |
Entry Point: | 0x00409c14 |
Compilation: | 1992-06-19 22:22:17 |
Checksum: | 0x00000000 (Actual: 0x00153f77) |
OS Version: | 1.0 |
PEiD: | PE32 executable (GUI) Intel 80386, for MS Windows |
Sign: | The PE file does not contain a certificate table. |
Sections: | 8 |
Imports: | kernel32, user32, oleaut32, advapi32, comctl32, |
Exports: | 0 |
Resources: | 11 |
Name | Virtual Address | Virtual Size | Raw Size | MD5 | Entropy |
---|---|---|---|---|---|
CODE | 0x00001000 | 0x00009338 | 0x00009400 | ab7597fd79b9d0a17bd1baa69835f2f7 | 6.56 |
DATA | 0x0000b000 | 0x0000024c | 0x00000400 | acdc962544afd7e8888841346d1b6a37 | 2.74 |
BSS | 0x0000c000 | 0x00000e8c | 0x00000000 | d41d8cd98f00b204e9800998ecf8427e | 0.00 |
.idata | 0x0000d000 | 0x00000950 | 0x00000a00 | bb5485bf968b970e5ea81292af2acdba | 4.43 |
.tls | 0x0000e000 | 0x00000008 | 0x00000000 | d41d8cd98f00b204e9800998ecf8427e | 0.00 |
.rdata | 0x0000f000 | 0x00000018 | 0x00000200 | 9ba824905bf9c7922b6fc87a38b74366 | 0.20 |
.reloc | 0x00010000 | 0x000008b0 | 0x00000000 | d41d8cd98f00b204e9800998ecf8427e | 0.00 |
.rsrc | 0x00011000 | 0x0000ec1c | 0x0000ee00 | c21c9ace49e443ab6af2966fbaba7d54 | 7.79 |