Files signed by AtrtisDev Group P

AtrtisDev Group P

AtrtisDev Group P is a digital signature publisher name observed in ThreatInfo records. This page groups 30 signed files and shows whether those files are currently classified as clean, undefined, or detected.

A digital signature can help identify a publisher, but it does not always prove that a file is safe. Certificates may be abused, stolen, expired, or attached to modified installers, so the file hash and detection status should be checked together.

Detection signal

Detected files use this signature name

At least one file signed as AtrtisDev Group P is detected by GridinSoft. Review the hashes below and scan the device if one of these files is present.

Download GridinSoft scanner
AlrucsService.exe ba910286336a898ec00b354375cbbaf5 Trojan.CoinMiner
AlrucsHelper.dll da641a8a4c7d9f65c512d4fe2e28848e Trojan.CoinMiner
AlrucsApp.exe d380e50313ffb7fa1d02fb825e9d6a7e Trojan.CoinMiner
AlrucsUninstaller.exe a5dd63e5d34cdead5ed8909793e12289 Trojan.CoinMiner
AlrucsUninstaller.exe fed44672ff994772887240b33a07ddc9 Trojan.CoinMiner
AlrucsApp.exe a703abc9c10a342bf11b08d26e69d27f Trojan.CoinMiner
alrucsservice.exe 68f187df9553d8692c3a95da8eb51f20 Trojan.CoinMiner
AlrucsUninstaller.exe e4b439b0817e720e667a23317859b599 Trojan.CoinMiner
AlrucsApp.exe f9262b474a7379ebf59ed03676e8d09c Trojan.CoinMiner
alrucsservice.exe 9d5b20f5a60f5d2a4f60454d9f7cb32d Trojan.CoinMiner
AlrucsHelper.dll 024381fcf3d6c04091d02a015a1f4cf7 Trojan.CoinMiner
AlrucsApp.exe dbc1fa290f4fdbbad6e00f0bc37a5d38 Trojan.CoinMiner
AlrucsUninstaller.exe d0195d0e3e814619f86f3d1dffe12e8c Trojan.CoinMiner
alrucsservice.exe 3914e4de4e88afb0af34355bca33d984 Trojan.CoinMiner
AlrucsApp.exe 0eb7af19db9a24d1e4e270bd5f235e74 Trojan.CoinMiner
alrucsservice.exe 03ec8504d277e18ddf777af07e43cffb Trojan.CoinMiner
AlrucsUninstaller.exe 357f5fb652821a2aa09693a4f2535cbf Trojan.CoinMiner
AlrucsApp.exe 7c67cc56d1da286d46b68f0648fc03b5 Trojan.CoinMiner
alrucsservice.exe 81e31222a7c8f63e5dffa56de6cdf4e0 Trojan.CoinMiner
AlrucsUninstaller.exe 5bc8eb42eb57a0f24e6b13f7b3aa0849 Trojan.CoinMiner
AlrucsApp.exe ebfe3c0a7402b068c8e46ffadde9ced9 Trojan.CoinMiner
AlrucsUninstaller.exe 89b0aca29231a4a187c1d4d01d472866 Trojan.CoinMiner
AlrucsService.exe 7b7dfdb5488f4e2ac1d149b90668db1b Trojan.CoinMiner
$R4YMKF7.exe 69de654a5ddc64de9243302abd6b9aa3 Trojan.CoinMiner
$RDG7MPU.exe d41f2321127327a634056af72892ff40 Trojan.CoinMiner
alrucsservice.exe 47c2279f1cc2f999f4383d8aed0e1635 Trojan.CoinMiner
AlrucsApp.exe 669532b731af4d4296fdf23aabb22571 Trojan.CoinMiner
AlrucsUninstaller.exe f64a31d7552f509c1063814c2549e7b1 Trojan.CoinMiner
alrucsservice.exe 27394a121e39078af6272f3466caecfa Trojan.CoinMiner
alrucsservice.exe c5f6e8ab6eb32e590b46edb29fca93a6 Trojan.CoinMiner

Certificate review summary

Do not trust this signature name by itself

ThreatInfo found detected files associated with AtrtisDev Group P. A matching signature name should be checked together with the file hash, detection verdict, and source path.

Recommended checks

  • Open any matching file report and compare the MD5 hash.
  • Confirm the file path and download source before trusting the binary.
  • Run a GridinSoft scan if a detected file from this list is present.