How to remove ruby.exe
ruby.exe
The module ruby.exe has been detected as General Threat
File Details
Product Name: | Ruby interpreter 2.3.1p112 [i386-mingw32] |
Company Name: | http://www.ruby-lang.org/ |
MD5: | a61782ba439fa52cf4187e6a5b66a853 |
Size: | 104 KB |
First Published: | 2017-06-11 00:00:49 (7 years ago) |
Latest Published: | 2017-06-11 00:00:49 (7 years ago) |
Status: | General Threat (on last analysis) | |
Analysis Date: | 2017-06-11 00:00:49 (7 years ago) |
Common Places:
%sysdrive%\metasploit\ruby\bin |
Geography:
100.0% |
OS Version:
Windows 7 | 100.0% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x000014e0 |
PE Sections:
Name | Size of data | MD5 |
.text | 6656 | 1c28856b87651e1900753f6934be2934 |
.data | 512 | b6f09d3552e3561cb0f5f0d1729500bd |
.rdata | 1024 | 16b58f8afdf5667c9e322c41a6a5e7e1 |
.bss | 0 | 00000000000000000000000000000000 |
.idata | 2048 | b72259e2bda14068d311c746061e7c68 |
.CRT | 512 | 4a76e2c646ccf1a45613e716533696f5 |
.tls | 512 | 1f6732440f226daf214541a118877c35 |
.rsrc | 1536 | 3881ae84ed1de90cecdd743b8bb70714 |
/4 | 1024 | 510249e4dcfaa54b5493200c24bc33db |
/19 | 40448 | 54104bbe5fb1e02609f95a5d382303e6 |
/31 | 6656 | 7c4c8688090cbac54e63f4f361e13ac0 |
/45 | 7168 | ad9ed3604704659480a05e934a89d577 |
/57 | 2048 | c94ec767efe339663a606315dd0247ac |
/70 | 1024 | cba1dec721f6bf274316229413e6e5a2 |
/81 | 6144 | d32fc73c52238ffe7919b108e2d10088 |
/92 | 512 | ab17afacd214551b5b189f1f6ca7495e |
More information:
Download GridinSoft
Anti-Malware - Removal tool for ruby.exe