How to remove AMD.exe
AMD.exe
The module AMD.exe has been detected as Trojan.CoinMiner
File Details
| MD5: | ac62edd743bc189fb5e31ef5843ac6a4 |
| Size: | 71 MB |
| First Published: | 2023-04-07 23:59:13 (2 years ago) |
| Latest Published: | 2025-12-16 23:21:05 (a day ago) |
| Status: | Trojan.CoinMiner (on last analysis) | |
| Analysis Date: | 2025-12-16 23:21:05 (a day ago) |
Common Places:
| %commonappdata% |
| %commonappdata% |
| %commonappdata% |
| %commonappdata% |
| %commonappdata% |
| %commonappdata% |
| %commonappdata% |
| %commonappdata% |
| %commonappdata% |
| %commonappdata% |
Geography:
| 50.9% | ||
| 17.2% | ||
| 4.9% | ||
| 4.9% | ||
| 3.5% | ||
| 2.5% | ||
| 2.5% | ||
| 2.1% | ||
| 1.4% | ||
| 1.4% | ||
| 1.4% | ||
| 1.4% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.4% |
OS Version:
| Windows 10 | 92.6% | |
| Windows 7 | 7.4% |
Analysis
| Subsystem: | Windows CUI |
| PE Type: | pe |
| OS Bitness: | 64 |
| Image Base: | 0x0000000140000000 |
| Entry Address: | 0x00367ec4 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 3844096 | d4182b5d33bb62828911f4ccaa8ada25 |
| .rdata | 2339328 | ab73fafaf800619e6ed227ae7b978521 |
| .data | 68188160 | bd574ff12db912e0364d90f7bcc61f1d |
| .pdata | 139776 | b836f27273efcb4c07f05022ddc008e6 |
| _RDATA | 512 | bbb5735c3b181336caa87acbfb4aba32 |
| .reloc | 51712 | 1bc88d9582cdcc32b1435128d2e80c59 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for AMD.exe