How to remove gzip.exe
gzip.exe
The module gzip.exe has been detected as Trojan.Downloader
File Details
MD5: | 3b47da704260eb2eb12f5d53c347e6c3 |
Size: | 89 KB |
First Published: | 2017-05-21 05:04:06 (7 years ago) |
Latest Published: | 2021-01-13 21:25:17 (3 years ago) |
Status: | Trojan.Downloader (on last analysis) | |
Analysis Date: | 2021-01-13 21:25:17 (3 years ago) |
Common Places:
%programfiles%\torrentsearch |
%programfiles%\radiomaximus |
%programfiles%\intellidownload |
%programfiles%\smartdl |
%profile% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
File Names:
gunzip.exe |
gzip.exe |
Geography:
28.9% | ||
8.2% | ||
8.2% | ||
7.2% | ||
7.2% | ||
5.2% | ||
4.1% | ||
3.1% | ||
3.1% | ||
3.1% | ||
2.1% | ||
2.1% | ||
2.1% | ||
2.1% | ||
2.1% | ||
1.0% | ||
1.0% | ||
1.0% | ||
1.0% | ||
1.0% | ||
1.0% | ||
1.0% | ||
1.0% | ||
1.0% | ||
1.0% | ||
1.0% |
OS Version:
Windows 10 | 44.9% | |
Windows 7 | 43.9% | |
Windows XP | 7.1% | |
Windows Vista | 2.0% | |
Windows 8 | 1.0% | |
Windows 8.1 | 1.0% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0000a580 |
PE Sections:
Name | Size of data | MD5 |
.text | 67584 | 0de95e4d5d869ea851a9a4fe027cf02a |
.rdata | 2048 | 523446b1fe687681174eaa5384418e35 |
.data | 18944 | d288c62c37de7a2bf5f73c9ee36b70f2 |
.idata | 2048 | 7e96d26e4dd1c919c0f0963ecfe140d6 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for gzip.exe