Gridinsoft Logo

IDM 6.xx Activator or Resetter v3.1.exe Trojan Wacatac Analysis

Trojan Wacatac
Updated on 2024-09-01 (5 months ago)
Checked by Online Virus Scanner
Online Virus Checker v.1.0.185.174
DB Version: 2024-09-01 23:00:33

Malware.Win32.Wacatac.cc

Wacatac is a type of malware that falls under the wide category of computer viruses. It is known for its malicious capabilities, which include data theft, system compromise, and the execution of additional malicious payloads on the infected system like ransomware.

File IDM 6.xx Activator or Resetter v3.1.exe
Checked 2024-09-01 20:18:18
MD5 61208ef95b922b0e93f0dbea9d4d565d
SHA1 c7202857462a081b7effa7a16ed97c7c56d1a125
SHA256 c0f92bb95f40c549b501e4c65b301258b20bca2e277b7bb765a0980422b9ef45
SHA512 17ccb5aca471e47959c6fbf29595966cd52ec2e521901fe9579f664497bec2334f12a5b9e05a1f2ffe1d8e202a66988c9fc505f3fa369c6d435c97c96f3097db
Imphash b5a014d7eeb4c2042897567e1288a095
File Size 900101 bytes

Malware.Win32.Wacatac.cc Removal

Malware.Win32.Wacatac.cc Removal

Gridinsoft has the capability to identify and eliminate Malware.Win32.Wacatac.cc without requiring further user intervention.

  • Start by downloading Gridinsoft Anti-Malware to your computer.
  • Double-click on the gsam-en-install.exe file and follow the on-screen instructions to install the program.
  • Once the installation of Gridinsoft Anti-Malware is complete, the program will open on the Scan screen.
  • Click on the "Standard Scan" button.
  • After the scanning process is finished, click on "Clean Now" to remove any detected threats.
  • If prompted, restart your system to complete the removal process.

File Version Information

Comments IDM 6.xx Activator or Resetter - CrackingCity.com
CompanyName CrackingCity.com
FileDescription IDM 6.xx Activator or Resetter
FileVersion 3.1.0.0
InternalName IDM 6.xx Activator or Resetter.exe
LegalCopyright CrackingCity.com, Copyright © 2020 - 2023
OriginalFilename IDM 6.xx Activator or Resetter.exe
ProductName IDM 6.xx Activator or Resetter
ProductVersion 3.1.0.0
Translation 0x0000 0x04b0

Portable Executable Info

a3c4fdd5deb6da41dd6b4460e66da640
6e759158590896f118be5a236ce99735
50dc06939bc2ec70
Image Base: 0x00400000
Entry Point: 0x00411def
Compilation: 2010-06-27 07:06:38
Checksum: 0x000e6111 (Actual: 0x000e6111)
OS Version: 4.0
PEiD: PE32 executable (GUI) Intel 80386, for MS Windows
Sign: The PE file does not contain a certificate table.
Sections: 4
Imports: COMCTL32, KERNEL32, USER32, GDI32, SHELL32, ole32, OLEAUT32, MSVCRT,
Exports: 0
Resources: 4

Sections

Name Virtual Address Virtual Size Raw Size MD5 Entropy
.text 0x00001000 0x00011317 0x00011400 797279c5ab1a163aed1f2a528f9fe3ce 6.58
.rdata 0x00013000 0x000030ea 0x00003200 1359639b02bcb8f0a8743e6ead1c0030 5.55
.data 0x00017000 0x0000292c 0x00000800 9415c9c8dea3245d6d73c23393e27d8e 3.66
.rsrc 0x0001a000 0x00017347 0x00017400 818e14b614c2b9dcd9738ef437566b77 1.76

Leave a comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware