Debug.exe Stealer Gen Analysis

Stealer Gen
Updated on 2024-08-25 (22 days ago)
Checked by Online Virus Scanner
Online Virus Checkerv.1.0.185.174
DB Version:2024-08-25 14:00:22

Spy.Win32.Gen.tr

This is a generic detection name used to identify a potentially harmful or suspicious file or program that exhibits characteristics of a Trojan horse. It is malware that disguises itself as a legitimate or benign program but contains malicious code or functions.

Filedebug.exe
Checked2024-08-25 11:10:19
MD512b07ef6bc3742432640502136064e83
SHA1cca3da703a1db7ea073db84c0379d9a25e576529
SHA256e88ca617a0069b073e932fb0536c8d23370bb72e4dbdee0b2f3a12d801b55a3d
SHA5122bf6fda26cf5746ff0a2d3fb4f4fb3d2334dce9bee6e0d9a0c8b1d6a683b1baa474fe5503a8988b8c975d77582eff34684593905aed75020ddeed6470f11e075
Imphashf34d5f2d4577ed6d9ceec516c1f5a744
File Size106496 bytes

Spy.Win32.Gen.tr Removal

Spy.Win32.Gen.tr Removal

Gridinsoft has the capability to identify and eliminate Spy.Win32.Gen.tr without requiring further user intervention.

  • Start by downloading Gridinsoft Anti-Malware to your computer.
  • Double-click on the gsam-en-install.exe file and follow the on-screen instructions to install the program.
  • Once the installation of Gridinsoft Anti-Malware is complete, the program will open on the Scan screen.
  • Click on the "Standard Scan" button.
  • After the scanning process is finished, click on "Clean Now" to remove any detected threats.
  • If prompted, restart your system to complete the removal process.

File Version Information

Translation0x0000 0x04b0
Comments
CompanyName
FileDescriptiondebug
FileVersion1.0.0.0
InternalNamedebug.exe
LegalCopyrightCopyright © 2024
LegalTrademarks
OriginalFilenamedebug.exe
ProductNamedebug
ProductVersion1.0.0.0
Assembly Version1.0.0.0

Portable Executable Info

ad4b91ccaba55db972bf3df769546f0d
4dbcd8e2b7a82acd1c92ab1089777f68
e896334d692b864c
Image Base:0x00400000
Entry Point:0x00415f46
Compilation:2054-03-29 05:52:19
Checksum:0x00024b16 (Actual: 0x00024b16)
OS Version:4.0
PDB Path:C:\Users\danie\source\repos\debug\debug\obj\Debug\debug.pdb
PEiD:PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
Sign:The PE file does not contain a certificate table.
Sections:3
Imports: mscoree,
Exports: 0
Resources:4

Sections

Name Virtual Address Virtual Size Raw Size MD5 Entropy
.text 0x00002000 0x00013f4c 0x00014000 dda172ecef7b45e801a2545c1c433f5d 7.53
.rsrc 0x00016000 0x00005a16 0x00005c00 3f74fd89ad18c43a01f6aa70f031798c 7.79
.reloc 0x0001c000 0x0000000c 0x00000200 a59285f4bf89f163f6ab27478d8ebf63 0.10

Leave a comment*

Share your thoughts or insights about this file. Do you align with our conclusion?

*Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Please Wait...

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware