Zipsoft-install__489__[19342].exe PUP Rostpay Analysis

PUP Rostpay
Updated on 2023-12-10 (5 months ago)
Checked by Online Virus Scanner
Online Virus Checkerv.1.0.151.174
DB Version:2023-12-10 15:01:16

PUP.Win32.Rostpay.vl!c

Filezipsoft-install__489__[19342].exe
Checked2023-12-10 15:56:29
MD5a042de3a3669afee3ed79593de313c5e
SHA1d312c81e8b283ddfd92eefeeef6e818674b2cfaa
SHA256607ecc28700d13e5d97737ad600f95c108f963dc47f727c7507f3ac2ebe10f69
SHA512cc9aa5d97397d7f067e137821f01b77b30391e215f4c6f6452365fcd1831177a305346b6d02681938b636b06f05d9ec98e16370aba0d3bb025af029225046b39
Imphashf34d5f2d4577ed6d9ceec516c1f5a744
File Size629704 bytes

PUP.Win32.Rostpay.vl!c Removal

PUP.Win32.Rostpay.vl!c Removal

Gridinsoft has the capability to identify and eliminate PUP.Win32.Rostpay.vl!c without requiring further user intervention.

  • Start by downloading Gridinsoft Anti-Malware to your computer.
  • Double-click on the gsam-en-install.exe file and follow the on-screen instructions to install the program.
  • Once the installation of Gridinsoft Anti-Malware is complete, the program will open on the Scan screen.
  • Click on the "Standard Scan" button.
  • After the scanning process is finished, click on "Clean Now" to remove any detected threats.
  • If prompted, restart your system to complete the removal process.

Signers

GlobalSign Code Signing Root R45GlobalSign nv-sa (BE)
GlobalSign GCC R45 EV CodeSigning CA 2020ROSTPAY LLC (RU)
VerificationOK

File Version Information

Translation0x0000 0x04b0
CommentsInstall any useful software with a single click
CompanyNameROSTPAY LTD
FileDescriptionZipSoft
FileVersion1.6.5.0
InternalNameZipSoft.exe
LegalCopyright© ROSTPAY LTD. All rights reserved.
LegalTrademarks
OriginalFilenameZipSoft.exe
ProductNameZipSoft
ProductVersion1.6.5.0
Assembly Version1.6.5.0

Portable Executable Info

30adcb5c0b2e3c35eaec2c110733c9f8
c98f96d6ffe5af8d4eb0870c1dc20826
92e0b496a6cada72
Image Base:0x00400000
Entry Point:0x0049703e
Compilation:2081-12-08 15:55:00
Checksum:0x000a4666 (Actual: 0x000a4666)
OS Version:4.0
PDB Path:C:\Users\strelnikov.k\source\repos\zipsoft-app\Wrapper\obj\Release\ZipSoft.pdb
PEiD:PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
Sign:OK
Sections:3
Imports: mscoree,
Exports: 0
Resources:7

Sections

Name Virtual Address Virtual Size Raw Size MD5 Entropy
.text 0x00002000 0x00095044 0x00095200 36f7c33c02a76ee403b9333572f7cff5 6.99
.rsrc 0x00098000 0x00001bcc 0x00001c00 d21e769e4c8b08300391fb81df9cc1cc 4.68
.reloc 0x0009a000 0x0000000c 0x00000200 fc95dd857fb398ca277b7392dd137ed0 0.10

Leave a comment*

Share your thoughts or insights about this file. Do you align with our conclusion?

*Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Please Wait...

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware