How to remove GWCtlSrv.exe
- File Details
- Overview
- Analysis
GWCtlSrv.exe
The module GWCtlSrv.exe has been detected as Trojan.Heur!
File Details
MD5: |
ab90da61e9e3daaf06bca9718618dac1 |
Size: |
4 MB |
First Published: |
2018-10-24 10:12:28 (5 years ago) |
Latest Published: |
2018-12-28 13:22:24 (5 years ago) |
Status: |
Trojan.Heur! (on last analysis) |
|
Analysis Date: |
2018-12-28 13:22:24 (5 years ago) |
Overview
%programfiles% |
%sysdrive%\#installed_soft |
%programfiles% |
%programfiles% |
%programfiles% |
|
45.3% |
|
|
31.4% |
|
|
5.8% |
|
|
4.7% |
|
|
2.3% |
|
|
2.3% |
|
|
2.3% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
Windows 10 |
95.3% |
|
Windows 7 |
4.7% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00e6a000 |
Name |
Size of data |
MD5 |
|
2503680 |
76d3683a1ca4abfed60a5b87489ccbb2 |
.rsrc |
1536 |
eb99a78d86ceccf0b6dd49b796610beb |
.idata |
512 |
140cd01c09527344e61343e970338214 |
|
512 |
93aeba4ac7ff4c94f1bd58f15f966c00 |
zxhkawad |
1812992 |
5a9618a135d560652ae0debc235bd616 |
okbhjyir |
512 |
d110f4e6edde8c709b4498b876392ced |
.taggant |
8704 |
52f0b32135f16e6f47be394584ac6915 |