How to remove gsync.exe
gsync.exe
The module gsync.exe has been detected as Ransom.Filecoder
File Details
Product Name: | GoodSync |
MD5: | fdcd0c638148cf42ab402fafe7a30e6b |
Size: | 11 MB |
First Published: | 2018-05-07 12:14:34 (5 years ago) |
Latest Published: | 2018-09-27 08:25:14 (5 years ago) |
Status: | Ransom.Filecoder (on last analysis) | |
Analysis Date: | 2018-09-27 08:25:14 (5 years ago) |
Overview
Signed By: | Siber Systems |
Status: | Valid |
Common Places:
%programfiles%\siber systems |
Geography:
72.7% | ||
9.1% | ||
9.1% | ||
9.1% |
OS Version:
Windows 7 | 81.8% | |
Windows 10 | 18.2% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 64 |
Image Base: | 0x0000000140000000 |
Entry Address: | 0x00318e08 |
PE Sections:
Name | Size of data | MD5 |
.text | 7811584 | 40a95c6a0f349b4365a6d09cc6ba93e9 |
.rdata | 3486208 | a7f7b07c3ccf5f3b6e8b7495addfa999 |
.data | 375296 | cc4e6722a8c4bdd7a4da9238aa3ab8c9 |
.pdata | 775168 | 0d5157deca7ac4152d565a657283d885 |
.tls | 512 | bf619eac0cdf3f68d496ea9344137e8b |
.rsrc | 3072 | 313c527ad0296c1cf800f18a93b70305 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for gsync.exe