Crack

HackTool:Win32/Gsecdump removal

Malware Removal

The HackTool:Win32/Gsecdump is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool:Win32/Gsecdump virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Yara detections observed in process dumps, payloads or dropped files

How to determine HackTool:Win32/Gsecdump?


File Info:

name: 57F222D8FBE0E290B4BF.mlw
path: /opt/CAPEv2/storage/binaries/94cae63dcbabb71c5dd43f55fd09caeffdcd7628a02a112fb3cba36698ef72bc
crc32: A0A6DD09
md5: 57f222d8fbe0e290b4bf8eaa994ac641
sha1: 4dd91591facc744f1f9f56d613cd3f395f97f1a7
sha256: 94cae63dcbabb71c5dd43f55fd09caeffdcd7628a02a112fb3cba36698ef72bc
sha512: 332ef78378e17f2ee3c68840a5d624751d8cac8798f0625f0b941ae1b3db145a5e3581e4a96e58751def4762d0f58bc211c4b9a02df8446c9d7e346a5ba4759a
ssdeep: 12288:UOX+zue+ECmGKjEcrFUw7tj+d2qb3vTbNMN2mb8V8YHR3EyK:UOOzueimG+FUOjSlb3vTbNMN2mcGyK
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T11CC47C10B3A484B1E467827C89A2875AE6B2B8564B31D7CF57D0472F2F33BE19D3A711
sha3_384: 3cfe6e9385fcc9e93e21fb3c5f34f55cc689bd8affa363e8293d610c8a2d4639e1f269fcb280b5e89cec9e89878ff4c8
ep_bytes: e8ed00000088010000a4df050079c707
timestamp: 2011-03-04 13:57:04

Version Info:

0: [No Data]

HackTool:Win32/Gsecdump also known as:

BkavW32.AIDetectMalware
LionicRiskware.Win32.Gsecdump.1!c
Elasticmalicious (high confidence)
DrWebTrojan.Siggen6.9786
MicroWorld-eScanApplication.Hacktool.Gsecdump.C
ClamAVWin.Trojan.7503818-1
FireEyeGeneric.mg.57f222d8fbe0e290
SkyhighBehavesLike.Win32.PUP.hh
McAfeeHTool-GSECDump
MalwarebytesTrojan.Yakes
ZillyaTool.Gsecdmp.Win64.5
SangforTrojan.Win32.Save.a
K7AntiVirusVirus ( 7000000b1 )
K7GWVirus ( 7000000b1 )
CrowdStrikewin/grayware_confidence_100% (W)
ArcabitApplication.Hacktool.Gsecdump.C
BitDefenderThetaGen:NN.ZexaF.36744.IyW@a0hrcAdi
VirITTrojan.Win32.Siggen6.OMK
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/PSWTool.Gsecdump.C potentially unsafe
ZonerProbably Heur.ExeHeaderL
APEXMalicious
CynetMalicious (score: 100)
Kasperskynot-a-virus:PSWTool.Win64.Gsecdmp.fb
BitDefenderApplication.Hacktool.Gsecdump.C
NANO-AntivirusTrojan.Win32.Ool.ffsbtp
AvastWin32:Gsecdump-B [PUP]
TencentMalware.Win32.Gencirc.10be94a0
EmsisoftApplication.Hacktool.Gsecdump.C (B)
F-SecureTrojan.TR/Agent.shyeh
VIPREApplication.Hacktool.Gsecdump.C
TrendMicroTROJ_FRS.VSN0AH18
Trapminemalicious.high.ml.score
SophosGsecdump (PUA)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Yakes.ebk
WebrootW32.Trojan.Gen
GoogleDetected
AviraTR/Agent.shyeh
Antiy-AVLTrojan[APT]/Win32.Taskmasters
KingsoftWin32.HeurC.KVM003.a
XcitiumMalware@#18wngly1r7h16
MicrosoftHackTool:Win32/Gsecdump
ViRobotHackTool.Gsecdump.557568
ZoneAlarmnot-a-virus:PSWTool.Win64.Gsecdmp.fb
GDataApplication.Hacktool.Gsecdump.C
VaristW32/A-120eafb8!Eldorado
AhnLab-V3Win-Trojan/Hacktool.557568
VBA32BScope.Trojan.Glupteba
ALYacApplication.Hacktool.Gsecdump.C
TACHYONTrojan/W32.Yakes.557568.C
Cylanceunsafe
PandaTrj/OCJ.A
TrendMicro-HouseCallTROJ_FRS.VSN0AH18
RisingTrojan.Generic@AI.99 (RDMK:B7GnycoAoV+aOGquC1vR1w)
YandexTrojan.GenAsa!O8UJx0v2bCE
IkarusWin32.Malware
MaxSecureTrojan.Malware.4887563.susgen
FortinetAdware/Gsecdump
AVGWin32:Gsecdump-B [PUP]
Cybereasonmalicious.1facc7
DeepInstinctMALICIOUS

How to remove HackTool:Win32/Gsecdump?

HackTool:Win32/Gsecdump removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment