How to remove GSetup.exe

GSetup.exe

The module GSetup.exe has been detected as Ransom.Sabsik

GSetup.exe
Product Name:

KMS Tools Portable x86

Company Name:

Ratiborus

MD5: a993c2497dd9fdc67e5f5c2eca8a9cbd
Size: 21 MB
First Published: 2024-03-30 23:01:44 (a year ago)
Latest Published: 2024-10-02 23:02:06 (7 months ago)
Status: Ransom.Sabsik (on last analysis)
Analysis Date: 2024-10-02 23:02:06 (7 months ago)
%profile%\downloads\kms tools lite portable 01.02.2024
%profile%\downloads\activators\kms tools lite portable 01.02.2024 portable.rar
50.0%
50.0%
Windows 10 100.0%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00001000

PE Sections:

Name Size of data MD5
.code 65024 a364b7add19c0cac73c2b5eb09757af2
.text 484352 e006dce82768330a8b8be1cc61569c70
.rdata 122880 2ac02c26bd144d4bc0646cb69d5e4536
.data 21808640 ab2e468948fcff6fbc8e38cea7aa7313
.rsrc 110592 7cdb687f901e01f561558af9679c2cef

More information:

Download GridinSoft Anti-Malware - Removal tool for GSetup.exe