How to remove GnuWin.exe
GnuWin.exe
The module GnuWin.exe has been detected as Spy.Zbot
![Remove Spy.Zbot GnuWin.exe](/screens/screen-d9cc0ee232603c1a0f8280fa2e6c100b.png)
File Details
Product Name: | sed |
Company Name: | GnuWin <gnuwin32.sourceforge.net> |
MD5: | d9cc0ee232603c1a0f8280fa2e6c100b |
Size: | 1 MB |
First Published: | 2018-05-09 12:10:27 (6 years ago) |
Latest Published: | 2018-05-20 14:08:48 (6 years ago) |
Status: | Spy.Zbot (on last analysis) | |
Analysis Date: | 2018-05-20 14:08:48 (6 years ago) |
Common Places:
%sysdrive%\software\windows\system utilities |
%sysdrive%\1_temp |
%sysdrive% |
File Names:
Stream Editor (sed-4.2.1-setup.exe |
sed-4.2.1-setup.exe |
GnuWin.exe |
Geography:
60.0% | ||
20.0% | ||
20.0% |
OS Version:
Windows 10 | 80.0% | |
Windows 7 | 20.0% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x00016478 |
PE Sections:
Name | Size of data | MD5 |
.text | 82944 | 824e3957006b0613ed9c53ada45c1db3 |
.itext | 3072 | a1e7b318e1115c7a9aaa4dee97b67e4b |
.data | 3584 | 00abeb3340a427c843c21fd934d5ae67 |
.bss | 0 | 00000000000000000000000000000000 |
.idata | 4096 | b47eaca4c149ee829de76a342b5560d5 |
.tls | 0 | 00000000000000000000000000000000 |
.rdata | 512 | 3746f5876803f8f30db5bb2deb8772ae |
.reloc | 0 | 00000000000000000000000000000000 |
.rsrc | 43008 | 13dff9d01e8d32adae5cb07e7f74a68c |
More information:
Download GridinSoft
Anti-Malware - Removal tool for GnuWin.exe
![copyright for information about GnuWin.exe](/images/copyright.png)