unhider.exe

Unhider

GridinSoft LLC

This is installed with Trojan Killer. The file has been seen being downloaded from trojan-killer.net.
Publisher:
GridinSoft  (signed by GridinSoft LLC)

Product:
Unhider

Description:
unhide nonsystem files

Version:
1.0.0.1

MD5:
6087b36d42e044ea787aca7d332baf1d

SHA-1:
82e06725d3f01bc07b75ee0a694e70ca8119c3b1

SHA-256:
cecb519e9eebc7e9491deb457a2bf37cd0fb4deee971c38b004c1576e07b0bf6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 10:54:28 AM UTC  (today)

File size:
137.8 KB (141,120 bytes)

Product version:
1.0.0.1

Copyright:
GridinSoft © 2011

Original file name:
unhider.exe

File type:
Executable application (Win32 EXE)

Language:
English

Common path:
C:\Program Files\gridinsoft trojan killer\unhider.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Subject:
CN=GridinSoft LLC, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=GridinSoft LLC, L=Kiev, S=Kiev, C=UA

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
3342F9C793FB9687D0852BFF37D40D9F

File PE Metadata
OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
1536:ZC4z5T+tN9jjWONLdSCxGvqxxx3F/hw0hseMaBAeXjj4feeerUFvTZUxLeAFhqTB:5zstN9jLxGyxxxhhRzEr0LekqNOr

Entry address:
0x132B

Entry point:
E8, DF, 14, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 38, 9C, 40, 00, 89, 0D, 34, 9C, 40, 00, 89, 15, 30, 9C, 40, 00, 89, 1D, 2C, 9C, 40, 00, 89, 35, 28, 9C, 40, 00, 89, 3D, 24, 9C, 40, 00, 66, 8C, 15, 50, 9C, 40, 00, 66, 8C, 0D, 44, 9C, 40, 00, 66, 8C, 1D, 20, 9C, 40, 00, 66, 8C, 05, 1C, 9C, 40, 00, 66, 8C, 25, 18, 9C, 40, 00, 66, 8C, 2D, 14, 9C, 40, 00, 9C, 8F, 05, 48, 9C, 40, 00, 8B, 45, 00, A3, 3C, 9C, 40, 00, 8B, 45, 04, A3, 40, 9C, 40, 00, 8D, 45, 08, A3, 4C, 9C, 40...
 
[+]

Entropy:
6.0766

Code size:
17.5 KB (17,920 bytes)

The file unhider.exe has been discovered within the following programs.

Trojan Killer  by Gridinsoft LLC
Publisher's description - “Developed specifically for automatic removal of viruses, bots, spyware, keyloggers, trojans, scareware and rootkits without the need to manually edit system files or registry, Trojan Killer additionally fixes system modifications that were introduced by malware and which, regretfully, are often ignored by some popular antivirus scanners.”
trojan-killer.com
3% remove it
 
Powered by Should I Remove It?

The file unhider.exe has been seen being distributed by the following URL.

Scan unhider.exe - Powered by Reason Core Security