How to remove AMD.exe
AMD.exe
The module AMD.exe has been detected as Trojan.CoinMiner
File Details
MD5: | 0ffed87f9337131d7f247c35f9014a0f |
Size: | 20 MB |
First Published: | 2022-08-07 23:32:05 (2 years ago) |
Latest Published: | 2023-10-28 23:26:53 (6 months ago) |
Status: | Trojan.CoinMiner (on last analysis) | |
Analysis Date: | 2023-10-28 23:26:53 (6 months ago) |
Common Places:
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
Geography:
51.5% | ||
10.3% | ||
9.3% | ||
8.2% | ||
4.1% | ||
4.1% | ||
4.1% | ||
2.1% | ||
2.1% | ||
2.1% | ||
1.0% | ||
1.0% |
OS Version:
Windows 10 | 96.0% | |
Windows 7 | 4.0% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 64 |
Image Base: | 0x0000000140000000 |
Entry Address: | 0x002b9154 |
PE Sections:
Name | Size of data | MD5 |
.text | 3114496 | 37b43984c3317f3d485779e8d9ab734b |
.rdata | 1614336 | 82aa1f54bd56bc1f035af0bce5b2e0c0 |
.data | 17076736 | 5b16853187841e3680aecec79a2cf489 |
.pdata | 125440 | ed4af0ae2f7503a0092d101b113797a8 |
_RDATA | 512 | 116152438bd2db39f9a72f499920a1f6 |
.rsrc | 512 | dbed82f3a12651074dccca43f9348c66 |
.reloc | 41984 | 1305ca10f23cebdebdd2c6f1c7ed0fc1 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for AMD.exe