How to remove GEMOUzakYardim.exe
- File Details
- Overview
- Analysis
GEMOUzakYardim.exe
The module GEMOUzakYardim.exe has been detected as Risk.RemoteAdmin
File Details
Product Name: |
|
Company Name: |
|
MD5: |
3b02c7ca0800f3a8e8a532fb5ad21328 |
Size: |
256 KB |
First Published: |
2019-06-18 00:19:21 (5 years ago) |
Latest Published: |
2019-06-18 00:19:21 (5 years ago) |
Status: |
Risk.RemoteAdmin (on last analysis) |
|
Analysis Date: |
2019-06-18 00:19:21 (5 years ago) |
Overview
Signed By: |
uvnc bvba |
Status: |
Invalid (digital signature could be stolen or file could be patched) |
%sysdrive%\eletorial\automation\gemo\gemo_ahmed_saleh.rar\gemo |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0001215f |
Name |
Size of data |
MD5 |
.text |
77824 |
c91ec8f2d7d6f1e35416df5fe732278b |
.rdata |
14848 |
861bb8b297f369ef773dc6c7b125b37f |
.data |
1536 |
53b3b978572819498207ab8228dc2ea8 |
.rsrc |
4096 |
3230ab480e325345ae17f28e7e0e6467 |