Gridinsoft Logo

Debug.exe Stealer Gen Analysis

Stealer Gen
Updated on 2024-08-25 (4 months ago)
Checked by Online Virus Scanner
Online Virus Checker v.1.0.185.174
DB Version: 2024-08-25 14:00:22

Spy.Win32.Gen.tr

This is a generic detection name used to identify a potentially harmful or suspicious file or program that exhibits characteristics of a Trojan horse. It is malware that disguises itself as a legitimate or benign program but contains malicious code or functions.

File debug.exe
Checked 2024-08-25 11:10:19
MD5 12b07ef6bc3742432640502136064e83
SHA1 cca3da703a1db7ea073db84c0379d9a25e576529
SHA256 e88ca617a0069b073e932fb0536c8d23370bb72e4dbdee0b2f3a12d801b55a3d
SHA512 2bf6fda26cf5746ff0a2d3fb4f4fb3d2334dce9bee6e0d9a0c8b1d6a683b1baa474fe5503a8988b8c975d77582eff34684593905aed75020ddeed6470f11e075
Imphash f34d5f2d4577ed6d9ceec516c1f5a744
File Size 106496 bytes

Spy.Win32.Gen.tr Removal

Spy.Win32.Gen.tr Removal

Gridinsoft has the capability to identify and eliminate Spy.Win32.Gen.tr without requiring further user intervention.

  • Start by downloading Gridinsoft Anti-Malware to your computer.
  • Double-click on the gsam-en-install.exe file and follow the on-screen instructions to install the program.
  • Once the installation of Gridinsoft Anti-Malware is complete, the program will open on the Scan screen.
  • Click on the "Standard Scan" button.
  • After the scanning process is finished, click on "Clean Now" to remove any detected threats.
  • If prompted, restart your system to complete the removal process.

File Version Information

Translation 0x0000 0x04b0
Comments
CompanyName
FileDescription debug
FileVersion 1.0.0.0
InternalName debug.exe
LegalCopyright Copyright © 2024
LegalTrademarks
OriginalFilename debug.exe
ProductName debug
ProductVersion 1.0.0.0
Assembly Version 1.0.0.0

Portable Executable Info

ad4b91ccaba55db972bf3df769546f0d
4dbcd8e2b7a82acd1c92ab1089777f68
e896334d692b864c
Image Base: 0x00400000
Entry Point: 0x00415f46
Compilation: 2054-03-29 05:52:19
Checksum: 0x00024b16 (Actual: 0x00024b16)
OS Version: 4.0
PDB Path: C:\Users\danie\source\repos\debug\debug\obj\Debug\debug.pdb
PEiD: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
Sign: The PE file does not contain a certificate table.
Sections: 3
Imports: mscoree,
Exports: 0
Resources: 4

Sections

Name Virtual Address Virtual Size Raw Size MD5 Entropy
.text 0x00002000 0x00013f4c 0x00014000 dda172ecef7b45e801a2545c1c433f5d 7.53
.rsrc 0x00016000 0x00005a16 0x00005c00 3f74fd89ad18c43a01f6aa70f031798c 7.79
.reloc 0x0001c000 0x0000000c 0x00000200 a59285f4bf89f163f6ab27478d8ebf63 0.10

Leave a comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware