Gridinsoft Logo

94579c6d83877d6deccea5dc8a1861dbf5e1206a51fbe19aeb5db63130004e21.exe Stealer Gen Analysis

Stealer Gen
Updated on 2025-01-16 (5 days ago)
Checked by Online Virus Scanner
Online Virus Checker v.1.0.204.174
DB Version: 2025-01-16 13:00:27

Spy.Win32.Gen.tr

This is a generic detection name used to identify a potentially harmful or suspicious file or program that exhibits characteristics of a Trojan horse. It is malware that disguises itself as a legitimate or benign program but contains malicious code or functions.

File 94579c6d83877d6deccea5dc8a1861dbf5e1206a51fbe19aeb5db63130004e21.exe
Checked 2025-01-16 11:40:57
MD5 9c6b1f5883ece0c2902cbdf7488646cf
SHA1 63648e586d19a283aa8b25bfcc58d92ef31c299a
SHA256 94579c6d83877d6deccea5dc8a1861dbf5e1206a51fbe19aeb5db63130004e21
SHA512 4ee82b2f3d6436e791af75a2c934c00d9e5ba7dea4896ef36e0737adacf8bf9540caca79859e969103e699bbca27b60f3701ff49db10e56c6bfd12f8d1ddd611
Imphash 36aca8edddb161c588fcf5afdc1ad9fa
File Size 4142080 bytes

Spy.Win32.Gen.tr Removal

Spy.Win32.Gen.tr Removal

Gridinsoft has the capability to identify and eliminate Spy.Win32.Gen.tr without requiring further user intervention.

  • Start by downloading Gridinsoft Anti-Malware to your computer.
  • Double-click on the gsam-en-install.exe file and follow the on-screen instructions to install the program.
  • Once the installation of Gridinsoft Anti-Malware is complete, the program will open on the Scan screen.
  • Click on the "Standard Scan" button.
  • After the scanning process is finished, click on "Clean Now" to remove any detected threats.
  • If prompted, restart your system to complete the removal process.

Portable Executable Info

Image Base: 0x00400000
Entry Point: 0x0060c1a0
Compilation: 2024-01-23 16:35:17
Checksum: 0x0030fe31 (Actual: 0x003f5647)
OS Version: 6.0
PDB Path: C:\ReleaseAI\win\Release\stubs\x86\ExternalUi.pdb
PEiD: PE32 executable (GUI) Intel 80386, for MS Windows
Sign: No valid SignedData structure was found.
Sections: 6
Imports: KERNEL32, imagehlp,
Exports: 0
Resources: 23

Sections

Name Virtual Address Virtual Size Raw Size MD5 Entropy
.text 0x00001000 0x0029729a 0x00297400 76a721d9c0d4b2829eb4a00ba01fc871 6.47
.rdata 0x00299000 0x000b3772 0x000b3800 68f92294b2792eb27bca3b5fff9ede6e 5.07
.data 0x0034d000 0x0000cb80 0x00003400 e98ea88d23706ee22313e0c4a05673ed 4.47
.didat 0x0035a000 0x00000704 0x00000800 024099aaf5ddf68616b817cf9ff2cd48 4.51
.rsrc 0x0035b000 0x00024f78 0x00025000 f6700920df25d1cbcfa3602f83ad99ee 5.06
.reloc 0x00380000 0x0007f800 0x0007f800 14805c426f6d667df0b039ac13d0321b 7.55

Leave a comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware