How to remove gsync.exe

gsync.exe

The module gsync.exe has been detected as Ransom.Filecoder

gsync.exe
Product Name:

GoodSync

MD5: fdcd0c638148cf42ab402fafe7a30e6b
Size: 11 MB
First Published: 2018-05-07 12:14:34 (5 years ago)
Latest Published: 2018-09-27 08:25:14 (5 years ago)
Status: Ransom.Filecoder (on last analysis)
Analysis Date: 2018-09-27 08:25:14 (5 years ago)
Signed By: Siber Systems
Status: Valid
%programfiles%\siber systems
72.7%
9.1%
9.1%
9.1%
Windows 7 81.8%
Windows 10 18.2%
Subsystem: Windows CUI
PE Type: pe
OS Bitness: 64
Image Base: 0x0000000140000000
Entry Address: 0x00318e08

PE Sections:

Name Size of data MD5
.text 7811584 40a95c6a0f349b4365a6d09cc6ba93e9
.rdata 3486208 a7f7b07c3ccf5f3b6e8b7495addfa999
.data 375296 cc4e6722a8c4bdd7a4da9238aa3ab8c9
.pdata 775168 0d5157deca7ac4152d565a657283d885
.tls 512 bf619eac0cdf3f68d496ea9344137e8b
.rsrc 3072 313c527ad0296c1cf800f18a93b70305

More information:

Download GridinSoft Anti-Malware - Removal tool for gsync.exe