Spoofer.exe Stealer Gen Analysis

Stealer Gen
Updated on 2024-04-21 (15 days ago)
Checked by Online Virus Scanner
Online Virus Checkerv.1.0.172.174
DB Version:2024-04-21 13:00:37

Spy.Win32.Gen.tr

This is a generic detection name used to identify a potentially harmful or suspicious file or program that exhibits characteristics of a Trojan horse. It is malware that disguises itself as a legitimate or benign program but contains malicious code or functions.

Filespoofer.exe
Checked2024-04-21 13:37:27
MD501c62c914f47273aa259f018ff2d2cf5
SHA16b692198f3d97a95ffecb320a7b6ccb05e2d1f7d
SHA25638c4626697bece1ce2266633a4df1529b9090a538c9751fedfa89bcfbe0f957e
SHA5125d5cbef10973551032d05f21235626ee6300ac40eeab42ed7996b9edb824874d5fdfcb0c7cc36d02a5a59c01e651eec9645fa80faceab998c7ea23df10a6722e
Imphashf34d5f2d4577ed6d9ceec516c1f5a744
File Size311296 bytes

Spy.Win32.Gen.tr Removal

Spy.Win32.Gen.tr Removal

Gridinsoft has the capability to identify and eliminate Spy.Win32.Gen.tr without requiring further user intervention.

  • Start by downloading Gridinsoft Anti-Malware to your computer.
  • Double-click on the gsam-en-install.exe file and follow the on-screen instructions to install the program.
  • Once the installation of Gridinsoft Anti-Malware is complete, the program will open on the Scan screen.
  • Click on the "Standard Scan" button.
  • After the scanning process is finished, click on "Clean Now" to remove any detected threats.
  • If prompted, restart your system to complete the removal process.

File Version Information

Translation0x0000 0x04b0
Comments
CompanyName
FileDescriptionCodominants Stenotypists
FileVersion1.0.0.3
InternalNameCurrent.exe
LegalCopyrightCopyright © 2023
LegalTrademarks
OriginalFilenameCurrent.exe
ProductNameTransferrin Hermitry
ProductVersion1.0.0.3
Assembly Version1.0.0.3

Portable Executable Info

Image Base:0x00400000
Entry Point:0x00403262
Compilation:2100-12-16 22:02:32
Checksum:0x00000000 (Actual: 0x0005bf42)
OS Version:4.0
PDB Path:C:\q6465m4g7\obj\Release\Current.pdb
PEiD:PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
Sign:The PE file does not contain a certificate table.
Sections:3
Imports: mscoree,
Exports: 0
Resources:2

Sections

Name Virtual Address Virtual Size Raw Size MD5 Entropy
.text 0x00002000 0x0004b528 0x0004b600 758a27819e23971300f5fb75fe6aef1a 8.00
.rsrc 0x0004e000 0x000005dc 0x00000600 93de2c34eb9025ca8f47d127cb756404 4.16
.reloc 0x00050000 0x0000000c 0x00000200 39717d77e5ecb79e0f0dbcb92e27b83f 0.08

Leave a comment*

Share your thoughts or insights about this file. Do you align with our conclusion?

*Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Please Wait...

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware