VirusShare.com - Because Sharing is Caring

Home • Hashes • Research • About • Swag Shop

Account: Login

Please login to search and download.

System currently contains 106,299,066 malware samples.

Report for a sample recently added to the system:
4a4861f2114d99e4384c18678f19d7da7a09d359f9cfc021c8791814c4fbe8a9
VirusShare info last updated 2025-11-30 00:00:00 UTC
Detected by 1 engines  
MD513f4d7a3b38014f361fe8378953f5272
SHA19ca93ec635592e572a31cc4d401224d3280d105e
SHA2564a4861f2114d99e4384c18678f19d7da7a09d359f9cfc021c8791814c4fbe8a9
SSDeep6144:bBcSdtUgfIk6GCBes2xMdLRmkw5HJZ5EAhsqFbdojDuUlk4iJ6qO:bDGgfIkXCBepCdLsZ5EWeDuUlkmx
Authentihashae45eee576ea3ffe910edfa7f2bb457e6bb130245807dc63d144e695937b82d2
Size444,300 bytes
File TypePE32 executable (GUI) Intel 80386, for MS Windows
Mime Typeapplication/x-dosexec
Extensionexe
TrIDWindows Control Panel Item (generic) (34.5%)
InstallShield setup (25.8%)
Win32 Executable MS Visual C++ (generic) (18.7%)
Win64 Executable (generic) (6.3%)
Win32 Dynamic Link Library (generic) (3.9%)
Detections
(1/72)
MicrosoftTrojan:Win32/Wacatac.B!ml
VirusTotal Report submitted 2025-11-29 01:11:54 UTC
ExIF Data
CharacterSetUnicode
CodeSize289792
CompanyName
EntryPoint0x2aca8
FileDescriptionSetup
FileFlagsPre-release, Private build
FileFlagsMask0x003f
FileOSWin32
FileSize434 kB
FileSubtype0
FileTypeWin32 EXE
FileTypeExtensionexe
FileVersion8.0.50727.42 (RTM.050727-4200)
FileVersionNumber8.0.50727.42
ImageFileCharacteristicsNo relocs, Executable, 32-bit
ImageVersion8
InitializedDataSize139776
InternalNamesetup.exe
LanguageCodeEnglish (U.S.)
LegalCopyright© Microsoft Corporation. All rights reserved.
LinkerVersion8
MIMETypeapplication/octet-stream
MachineTypeIntel 386 or later, and compatibles
OSVersion5
ObjectFileTypeExecutable application
OriginalFileNamesetup.exe
PETypePE32
ProductName
ProductVersion8.0.50727.42
ProductVersionNumber8.0.50727.42
SubsystemWindows GUI
SubsystemVersion4
TimeStamp2005:09:23 10:45:29+00:00
UninitializedDataSize0