Install.exe Stealer Keylogger Analysis

Stealer Keylogger
Updated on 2024-04-22 (14 days ago)
Checked by Online Virus Scanner
Online Virus Checkerv.1.0.172.174
DB Version:2024-04-22 10:00:29

Spy.Win32.Keylogger.cld

Keylogger is designed to secretly record keystrokes on a computer or mobile device, capturing everything a user types, including sensitive information like passwords and credit card numbers. It can be used by cybercriminals to steal personal and confidential data without the user's knowledge or consent.

Fileinstall.exe
Checked2024-04-22 10:44:02
MD549f6fc73da9d5997441ab923e9c1c63e
SHA168a45b930a2756ab815b13c917042cef46847ac5
SHA256192ce936608533e402bd2821957338a6a6544ae4410ab4fcf2c2dc25d3c15640
SHA512c090ec4adadaaa8e0bddfd7085a75d164ea042ba8303903287078e7b807040144354aa66d151e3e8a96686716ec5c9dfb8dfe188d35f70b982e8080994e113e1
Imphashefd2908deb17785efd11f9c5c5e4a7ec
File Size3645048 bytes

Spy.Win32.Keylogger.cld Removal

Spy.Win32.Keylogger.cld Removal

Gridinsoft has the capability to identify and eliminate Spy.Win32.Keylogger.cld without requiring further user intervention.

  • Start by downloading Gridinsoft Anti-Malware to your computer.
  • Double-click on the gsam-en-install.exe file and follow the on-screen instructions to install the program.
  • Once the installation of Gridinsoft Anti-Malware is complete, the program will open on the Scan screen.
  • Click on the "Standard Scan" button.
  • After the scanning process is finished, click on "Clean Now" to remove any detected threats.
  • If prompted, restart your system to complete the removal process.

File Version Information

CompanyNameMCsoft
FileDescriptionInstall
FileVersion2.2.0.0
InternalName
LegalCopyright
LegalTrademarks
OriginalFilename
ProductName
ProductVersion2.2
Comments
Translation0x0409 0x04e4

Portable Executable Info

3a50e80bbac6cdc04c472833746d25d3
74a89ee598283ed8bf17c360ddd8423e
ece2eae4b696c6cc
Image Base:0x00400000
Entry Point:0x006c0e2c
Compilation:2019-08-05 13:11:52
Checksum:0x00389773 (Actual: 0x0037a521)
OS Version:5.0
PEiD:PE32 executable (GUI) Intel 80386, for MS Windows
Sign:OK
Sections:10
Imports: oleaut32, advapi32, user32, kernel32, msimg32, gdi32, version, mpr, ole32, comctl32, shell32, comdlg32, winspool,
Exports: 0
Resources:116

Sections

Name Virtual Address Virtual Size Raw Size MD5 Entropy
.text 0x00001000 0x002bb1ac 0x002bb200 33c642d7f4730309477ce2a857197bd2 6.38
.itext 0x002bd000 0x00003eac 0x00004000 82a058bb19acbb5e9ba31399e28a90d1 5.84
.data 0x002c1000 0x00010248 0x00010400 c4284e3554afb8af09531c56cc3f0344 6.10
.bss 0x002d2000 0x000060a8 0x00000000 d41d8cd98f00b204e9800998ecf8427e 0.00
.idata 0x002d9000 0x00003d3e 0x00003e00 99d8a55fb9d2b6867394c2f502914f83 5.24
.didata 0x002dd000 0x000003a6 0x00000400 dcedc55083c753845719ff91092785b4 3.72
.tls 0x002de000 0x00000048 0x00000000 d41d8cd98f00b204e9800998ecf8427e 0.00
.rdata 0x002df000 0x00000018 0x00000200 aa5165ced0581cc88471096e07b02274 0.21
.reloc 0x002e0000 0x00033460 0x00033600 447b72e9ffe9e5b02145b7c52a3b5948 6.69
.rsrc 0x00314000 0x00071200 0x00071200 5afec8fb8336c05e00533cec39ed9104 5.89

Leave a comment*

Share your thoughts or insights about this file. Do you align with our conclusion?

*Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Please Wait...

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware