Threat Database Backdoors Backdoor.Wavipeg.A

Backdoor.Wavipeg.A

By CagedTech in Backdoors

Threat Scorecard

Threat Level: 60 % (Medium)
Infected Computers: 46
First Seen: January 4, 2019
Last Seen: April 17, 2026
OS(es) Affected: Windows

The detection of Backdoor.Wavipeg.A on your system indicates a potential security threat that requires immediate attention. This backdoor threat is designed to allow unauthorized access to your computer, which can lead to a range of serious consequences, including data theft, malware distribution, and system compromise. It is essential to understand the nature of this threat and take prompt action to remove it and protect your system.

What Is Backdoor.Wavipeg.A?

Backdoor.Wavipeg.A is a type of malware that creates a secret entrance to your computer, allowing hackers to access your system without your knowledge or consent. This backdoor can be used to install additional malware, steal sensitive information, or take control of your computer for malicious purposes. The presence of Backdoor.Wavipeg.A on your system poses a significant risk to your privacy and security.

How Backdoor.Wavipeg.A Operates

Backdoor.Wavipeg.A operates by exploiting vulnerabilities in your system or using social engineering tactics to gain access to your computer. Once installed, it can communicate with its command and control server to receive instructions and transmit stolen data. This malware can also hide its presence by disguising itself as a legitimate program or process, making it challenging to detect. The backdoor can be used to download and install additional malware, creating a network of infected computers that can be used for malicious activities.

Symptoms of Infection

The symptoms of a Backdoor.Wavipeg.A infection can be subtle, but they may include unusual system behavior, such as slow performance, unexpected crashes, or unfamiliar programs running in the background. You may also notice suspicious network activity, such as unusual outgoing connections or data transfers. In some cases, the malware may display fake alerts or messages, attempting to trick you into installing additional malware or revealing sensitive information.

  • Unexplained changes to system settings or configuration
  • Appearance of unfamiliar programs or icons
  • Increased network activity or data usage
  • System crashes or instability
  • Unusual pop-ups or alerts

How to Remove Backdoor.Wavipeg.A

  1. Boot your computer in Safe Mode with Networking to prevent the malware from loading and to allow for a clean removal process.
  2. Use a reputable anti-malware tool, such as SpyHunter, to perform a full scan of your system and detect any malware components.
  3. Uninstall any suspicious programs or applications that may be related to the malware.
  4. Reset your web browsers, including Chrome, Firefox, and Edge, to their default settings to remove any malicious extensions or settings.
  5. Reboot your computer and perform another scan to ensure that the malware has been completely removed.

Conclusion

Removing Backdoor.Wavipeg.A from your system requires careful attention to detail and a thorough understanding of the malware's behavior. By following the steps outlined above and using reputable security tools, you can effectively remove the malware and protect your system from future threats. It is essential to remain vigilant and proactive in maintaining your system's security, as new threats emerge daily. Regularly updating your operating system, using strong antivirus software, and practicing safe computing habits can help prevent similar infections in the future.

Analysis Report

General information

Family Name: Backdoor.Wavipeg.A
Signature status: No Signature

Known Samples

MD5: f010981047138d543a4990618338daeb
SHA1: ab3956c43b180d8d2e9ee730f4d0d7b2b3abb5bf
SHA256: 91E26708B61789D34D806F6D42D2E10A5CE20D7CA8CC663E70BF6345F34E6A97
File Size: 1.31 MB, 1310289 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have security information
  • File has exports table
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
Show More
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

File Traits

  • No Version Info
  • x86

Block Information

Total Blocks: 4,727
Potentially Malicious Blocks: 1,048
Whitelisted Blocks: 3,679
Unknown Blocks: 0

Visual Map

0 0 0 0 0 0 0 0 0 0 0 0 x 0 x x x x x 0 x 0 0 0 0 x x x x x x x x x x 0 x x 0 x x x x 0 0 0 x x x x x x x x x x 0 x x x x x x x x x x x x x x x x 0 x x x 0 x x x x x x x x 0 x x 0 0 0 x x x x 0 x x x x x x x x x 0 x 0 0 x x x 0 x x x x x x x x x x 0 0 0 0 0 0 x x 0 x 0 x 0 x x 0 0 x 0 0 0 x x 0 0 0 x x x 0 0 x x 0 0 0 0 0 0 0 0 0 x x 0 x 0 0 0 x x 0 0 0 x x x 0 0 x 0 0 0 x x 0 x 0 0 0 0 0 0 0 0 0 0 0 x 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 x x x x 0 x x 0 0 x 0 0 0 0 x 0 x 0 0 x x x x x x x x x 0 0 0 0 0 x x x x x 0 x 0 0 0 0 x 0 x x 0 x x 0 x 0 x x x 0 0 0 x 0 0 0 0 0 x x 0 x 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 x 0 0 0 0 0 x 0 x 0 0 0 x 0 0 0 0 x 0 0 0 0 0 0 0 0 x x 0 0 0 0 x 0 0 x x 0 x x x 0 0 0 0 0 0 0 0 0 0 0 x 0 x 0 0 0 0 0 x 0 0 0 x 0 x 0 0 0 0 0 0 0 0 0 x x x 0 0 0 0 0 0 0 0 x x 0 0 0 x 0 0 x 0 x 0 0 x 0 0 0 x x 0 0 0 x 0 0 0 0 0 0 0 x 0 x x x x x x x 0 x 0 0 x x 0 0 0 x x 0 0 0 0 0 0 x 0 0 0 0 x 0 0 0 0 0 0 0 0 0 x 0 0 x 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 x 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 x x x x x x x 0 x x x x x x 0 x 0 x x 0 x 0 0 0 0 0 0 x 0 x x x 0 x 0 x x 0 0 0 x x 0 0 0 x 0 0 0 x x 0 x x x x 0 x 0 x x 0 x 0 0 x x x x 0 0 0 0 x x 0 x 0 0 0 0 0 x 0 x x 0 0 x x x 0 0 x 0 x x 0 x x x 0 x 0 x x 0 x 0 0 x 0 x x 0 x 0 0 x x x 0 0 0 x x x 0 0 x x x x x 0 0 0 x 0 0 0 x x 0 x x x 0 x 0 x 0 0 0 x 0 x x x x x 0 0 0 0 0 0 x 0 x 0 0 x x 0 0 0 0 x x x x 0 x 0 x x x x x x x 0 x x x 0 0 x x x x x x x 0 0 x 0 x x x x x x x 0 x 0 x x x x x 0 x x x x 0 0 x x 0 0 0 x x x x 0 x 0 0 x 0 x x x 0 x 0 x x x 0 0 0 0 0 0 x x x x 0 x x x 0 x 0 0 x 0 0 0 0 0 0 x 0 x 0 0 x 0 x x x x x x x 0 x 0 x x x 0 x 0 0 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 0 x x x x 0 0 0 0 0 0 x 0 x x 0 x 0 x x x x x 0 0 0 0 x 0 0 0 0 0 0 0 0 0 x 0 x x x x x x 0 x 0 x x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 x 0 0 0 0 0 0 0 x x 0 0 0 0 0 x 0 x 0 x 0 0 0 0 0 0 0 x 0 0 0 x 0 x x x x x x x 0 0 x x 0 x x 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x x x x 0 0 x x 0 0 x x 0 x 0 0 x x x x 0 x 0 0 x 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 x 0 0 x 0 x 0 0 0 x x x x x x x x 0 x x x 0 0 0 0 0 0 x x 0 x 0 x x 0 x x 0 0 0 0 0 0 0 0 0 x x x x x x x x x x 0 x x 0 x x 0 0 0 x x 0 0 x 0 0 0 x x 0 0 0 x x 0 0 0 0 0 0 0 x 0 0 0 0 0 x x x x x x 0 0 0 0 0 x 0 0 x 0 x 0 0 x x 0 0 0 0 x 0 0 0 0 x 0 x 0 x x x 0 0 0 x x x x x x x 0 x x x x 0 x 0 x x x 0 0 0 x x x 0 0 0 0 0 x x 0 x 0 0 x x 0 x x x x x 0 0 0 0 x x 0 x 0 0 x 0 x 0 x 0 x x 0 x 0 x x x 0 0 0 x 0 0 x 0 0 0 0 x x x x x 0 0 0 0 0 x x 0 0 x x 0 x 0 x 0 0 0 0 x 0 x x x 0 x 0 0 x x x x 0 x x 0 x x x x x x 0 x x 0 0 0 0 0 0 0 x x x x 0 x x 0 x x x x x 0 0 x x 0 x x x 0 0 x x 0 x 0 x 0 x 0 x 0 x x x 0 0 0 x x 0 0 0 0 x x x x 0 0 0 0 0 x x 0 x x 0 0 0 x x 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 x x 0 x x 0 0 0 0 x x 0 x x 0 x 0 x x 0 x 0 0 0 x 0 x x x x 0 x 0 x 0 0 x 0 x 0 0 0 0 x 0 0 0 x 0 x 0 0 x 0 0 0 x x x x 0 x x 0 x x 0 x x 0 x 0 0 0 0 x 0 0 0 x x x x x 0 0 0 x x 0 0 0 0 x x x x 0 0 x x x x x x 0 x 0 0 x 0 x x x 0 0 x 0 x 0 0 0 0 0 x 0 0 x 0 x 0 0 0 x x x x 0 x x x x x 0 x x 2 0 0 x 0 x x x x 0 x x x x 0 0 0 0 x 0 x 0 x x x 0 0 x x 0 0 0 x 0 0 x x x 0 x x x x x x 0 0 x x 0 x x 0 0 x 0 x 0 0 0 0 x x x 0 0 0 x x x x x 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 x x 0 0 0 x x 0 0 0 x x x 0 0 0 x 0 x x x 0 x 0 x x 0 x x x 0 x x 0 0 x 0 0 x 0 0 0 x 0 x 0 x x 0 x 0 0 0 0 0 x x x x 0 0 0 0 0 0 0 0 0 0 0 x 0 x 0 x x x x 0 0 x x 0 0 x 0 0 x x x 0 x x x x x x x 0 0 x x 0 x 0 x x 0 0 0 0 0 0 x 0 x x 0 x x x x x 0 x 0 0 0 0 x 0 0 x 0 x 0 0 0 0 0 0 x 0 x x 0 x x 0 x x x x x 0 x 0 0 0 x x 0 x 0 x 0 x x 0 0 x 0 0 0 x 0 0 0 x x x 0 0 0 0 0 x x x x 0 x x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x x 0 0 0 0 0 0 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 x 0 0 0 0 0 0 0 0 0 0 x x x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 x 0 x 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0
... Data truncated
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Wavipeg.A

Files Modified

File Attributes
c:\users\user\appdata\roaming\microsoft\media Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\roaming\microsoft\media Synchronize,Write Attributes
c:\users\user\appdata\roaming\microsoft\media\mssvc.exe Generic Write,Read Attributes

Related Posts

Trending

Most Viewed

Loading...