How to remove gmstcccpdzbb.exe

gmstcccpdzbb.exe

The module gmstcccpdzbb.exe has been detected as Trojan.CoinMiner

gmstcccpdzbb.exe
Product Name:

Telegram FZ-LLC

Company Name:

Telegram Desktop

MD5: 7da9cc0ee5c06f773356da19fb703544
Size: 5 MB
First Published: 2025-10-14 23:01:04 (4 days ago)
Latest Published: 2025-10-14 23:01:04 (4 days ago)
Status: Trojan.CoinMiner (on last analysis)
Analysis Date: 2025-10-14 23:01:04 (4 days ago)
Signed By: Telegram FZ-LLC
Status: Invalid (digital signature could be stolen or file could be patched)
%commonappdata%
100.0%
Windows 10 100.0%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 64
Image Base: 0x0000000140000000
Entry Address: 0x00001140

PE Sections:

Name Size of data MD5
.text 46080 92b72d6a4c5b78da43d62f89ebfdb932
.rdata 15872 ad521b4269dbb8e1b3a0cd27b6634969
.data 5214208 c683d966215da362afc525697885081a
.pdata 512 4a6693a3d45f3c648a6a6e8da298cea9
.00cfg 512 b18c7380298e104adf73576fa46bccc1
.tls 512 bf619eac0cdf3f68d496ea9344137e8b
.rsrc 1024 1c8143a91b50857bf5b0c2fb2cdc31d6
.reloc 512 4ac4e653ffb8f2d1a68f67a243199e30

More information:

Download GridinSoft Anti-Malware - Removal tool for gmstcccpdzbb.exe