How to remove gzip.exe
gzip.exe
The module gzip.exe has been detected as Spy.Zbot
File Details
Product Name: | Gzip |
Company Name: | GnuWin32 <http://gnuwin32.sourceforge.net> |
MD5: | bf2aaf579a213e86903031a3f95050e2 |
Size: | 66 KB |
First Published: | 2018-05-08 19:11:53 (6 years ago) |
Latest Published: | 2018-06-12 07:07:13 (6 years ago) |
Status: | Spy.Zbot (on last analysis) | |
Analysis Date: | 2018-06-12 07:07:13 (6 years ago) |
Common Places:
%profile%\downloads\downloads\ubcd535\ubcd\tools\win32\unxutils |
%programfiles%\ptv-ag\ptv map@amp;guide desktop 2017 |
%programfiles%\scilab-6.0.0\tools |
%programfiles%\gnuwin32 |
%sysdrive%\!may 2018 ul to\pcwmultiboot_v2.4.zip\pcwmultiboot\tools\vhd_w7c |
%localappdata%\six networks\shared |
%sysdrive%\saved applications\microsoft windows complete\microsoft builds\ubcd538\ubcd\tools\win32\unxutils |
%profile%\downloads\új mappa (2)\ubcd\tools\win32\unxutils |
%sysdrive%\izmtekdesmbhv2\itd\nt5\tools |
%sysdrive%\izmtekdesmbhv2\itd\nt5 |
Geography:
12.0% | ||
10.0% | ||
10.0% | ||
8.0% | ||
8.0% | ||
6.0% | ||
6.0% | ||
4.0% | ||
4.0% | ||
4.0% | ||
4.0% | ||
4.0% | ||
2.0% | ||
2.0% | ||
2.0% | ||
2.0% | ||
2.0% | ||
2.0% | ||
2.0% | ||
2.0% | ||
2.0% | ||
2.0% |
OS Version:
Windows 10 | 78.4% | |
Windows 7 | 17.6% | |
Windows XP | 3.9% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x00001280 |
PE Sections:
Name | Size of data | MD5 |
.text | 52224 | 1fa868d60966e849cea6e7af41693c86 |
.data | 3072 | ae5caf9c18934bd976eed93525c3b0f2 |
.rdata | 5632 | 6318728defbdc22fa2e0bc039f1a768d |
.bss | 0 | 00000000000000000000000000000000 |
.idata | 2048 | 614777aa4245fe35a5d912778d85abb7 |
.rsrc | 4096 | 1ada1b34a04eb5e8a82a4fa91aa005e8 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for gzip.exe