DBDv2.2.exe Malware RedLine Analysis

Malware RedLine
Updated on 2023-09-18 (10 months ago)
Checked by Online Virus Scanner
Online Virus Checkerv.1.0.139.174
DB Version:2023-09-18 07:04:15

Malware.Win32.RedLine.bot

RedLine Stealer is a malicious program designed to exfiltrate users’ confidential data from browsers, systems, and installed software. It is often delivered through email attachments or compromised websites. RedLine not only steals sensitive information but also poses a significant threat by introducing other malware into the victim's operating system. This two-pronged attack approach makes RedLine a potent and dangerous cyber threat.

FileDBDv2.2.exe
Checked2023-09-18 04:56:28
MD532b660d23685d0a0a3d58ac35bdbd059
SHA13f77140cf95a3a5bc3fb7d449014abdc72ffab65
SHA25607e7387a36755b6aa4c02c64bd0ee553a54f2847c193d0d9b6681553b7506279
SHA512b8cd680aa99030c728d6bd7beebec2f4fa7e58bcdd0593af1eeb6b32f89359cb83744d9f7869eab96d13ca93bd20cd38140556dfd9c2e5bee7f3e8e015a095be
Imphash623bfeaeb9cb44ada63a939253c66d41
File Size267264 bytes

Malware.Win32.RedLine.bot Removal

Malware.Win32.RedLine.bot Removal

Gridinsoft has the capability to identify and eliminate Malware.Win32.RedLine.bot without requiring further user intervention.

  • Start by downloading Gridinsoft Anti-Malware to your computer.
  • Double-click on the gsam-en-install.exe file and follow the on-screen instructions to install the program.
  • Once the installation of Gridinsoft Anti-Malware is complete, the program will open on the Scan screen.
  • Click on the "Standard Scan" button.
  • After the scanning process is finished, click on "Clean Now" to remove any detected threats.
  • If prompted, restart your system to complete the removal process.

Portable Executable Info

Image Base:0x00400000
Entry Point:0x00407ea0
Compilation:2023-09-17 16:27:25
Checksum:0x00000000 (Actual: 0x00046212)
OS Version:5.0
PEiD:PE32 executable (console) Intel 80386, for MS Windows
Sign:The PE file does not contain a certificate table.
Sections:4
Imports: KERNEL32, ADVAPI32, ole32,
Exports: 0
Resources:1

Sections

Name Virtual Address Virtual Size Raw Size MD5 Entropy
.text 0x00001000 0x00010cc3 0x00010e00 160eebcaac2ad6efc5231ef520d91d81 6.92
.rdata 0x00012000 0x000035cc 0x00003600 6056759f483164cd10857c124347d3ce 5.82
.data 0x00016000 0x00001c5c 0x00001200 f660ff98b236a7d26067b4bf372df85c 3.59
.rsrc 0x00018000 0x0002b860 0x0002ba00 4711561dfd437e84913d2f99cf5225a0 5.82

Leave a comment*

Share your thoughts or insights about this file. Do you align with our conclusion?

*Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Please Wait...

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware