How to remove gmstcccpdzbb.exe
- File Details
- Overview
- Analysis
gmstcccpdzbb.exe
The module gmstcccpdzbb.exe has been detected as Trojan.CoinMiner
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
7da9cc0ee5c06f773356da19fb703544 |
| Size: |
5 MB |
| First Published: |
2025-10-14 23:01:04 (4 months ago) |
| Latest Published: |
2025-10-14 23:01:04 (4 months ago) |
| Status: |
Trojan.CoinMiner (on last analysis) |
|
| Analysis Date: |
2025-10-14 23:01:04 (4 months ago) |
Overview
| Signed By: |
Telegram FZ-LLC |
| Status: |
Invalid (digital signature could be stolen or file could be patched) |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
64 |
| Image Base: |
0x0000000140000000 |
| Entry Address: |
0x00001140 |
| Name |
Size of data |
MD5 |
| .text |
46080 |
92b72d6a4c5b78da43d62f89ebfdb932 |
| .rdata |
15872 |
ad521b4269dbb8e1b3a0cd27b6634969 |
| .data |
5214208 |
c683d966215da362afc525697885081a |
| .pdata |
512 |
4a6693a3d45f3c648a6a6e8da298cea9 |
| .00cfg |
512 |
b18c7380298e104adf73576fa46bccc1 |
| .tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
| .rsrc |
1024 |
1c8143a91b50857bf5b0c2fb2cdc31d6 |
| .reloc |
512 |
4ac4e653ffb8f2d1a68f67a243199e30 |