How to remove AMD.exe
AMD.exe
The module AMD.exe has been detected as Trojan.CoinMiner
File Details
Product Name: | MicrosoftHost |
Company Name: | Microsoft Corporation |
MD5: | e2d95679e67f035016371e293f6030d8 |
Size: | 1018 KB |
First Published: | 2018-11-07 21:11:55 (6 years ago) |
Latest Published: | 2018-11-14 21:18:37 (6 years ago) |
Status: | Trojan.CoinMiner (on last analysis) | |
Analysis Date: | 2018-11-14 21:18:37 (6 years ago) |
Common Places:
%commonappdata% |
Geography:
100.0% |
OS Version:
Windows 10 | 66.7% | |
Windows 7 | 33.3% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 64 |
Image Base: | 0x0000000140000000 |
Entry Address: | 0x0003f1d4 |
PE Sections:
Name | Size of data | MD5 |
.text | 619520 | 0c893c63ffc9f5f0485662d42ca09de5 |
.rdata | 287744 | 8b7adcb83b6c44284488fe6230f0e758 |
.data | 35328 | 6de7fb0cc0b10da8f7f81cc42b78979b |
.pdata | 29184 | a47fe4cb0b7374ba1b55925715de9a39 |
.rsrc | 65024 | 2ec3b31cfee60d25e45527c79a00e6b7 |
.reloc | 5120 | e85f44f7cc6cd81d630c556a68fc76a8 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for AMD.exe