How to remove AppModule.exe
- File Details
- Overview
- Analysis
AppModule.exe
The module AppModule.exe has been detected as Trojan.CoinMiner
File Details
Product Name: |
|
Company Name: |
|
MD5: |
191f67bf26f68cef47359b43facfa089 |
Size: |
2 MB |
First Published: |
2020-08-04 11:25:35 (3 years ago) |
Latest Published: |
2024-02-17 23:15:25 (2 months ago) |
Status: |
Trojan.CoinMiner (on last analysis) |
|
Analysis Date: |
2024-02-17 23:15:25 (2 months ago) |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
|
82.2% |
|
|
10.3% |
|
|
2.8% |
|
|
1.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.5% |
|
|
0.5% |
|
|
0.3% |
|
|
0.3% |
|
Windows 10 |
64.4% |
|
Windows 7 |
33.7% |
|
Windows 8.1 |
1.2% |
|
Windows Vista |
0.7% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x0016d3d8 |
Name |
Size of data |
MD5 |
.text |
1830912 |
c6f108a6df5a7ed76f6e4cb709c674ee |
.rdata |
628224 |
60623ab0f6195c282015d9d7145bca61 |
.data |
48640 |
85f93f23368f5addd5ad87171dd680bb |
.pdata |
62464 |
bea076d5442b36d30954c73de8955d2a |
_RANDOMX |
2048 |
b182bf6976fc56dcc30743b1e5cbdaae |
_SHA3_25 |
2560 |
c14f9aad5e95192cd7523ba6675549fd |
_TEXT_CN |
6656 |
6a7f77e47f77f65bef85036ae5a71106 |
_TEXT_CN |
4608 |
409bf3f918f2402291cb56c2e9354b47 |
_RDATA |
512 |
4798cb7b67f5d0efb7ffb5d02626133c |
.rsrc |
48640 |
9a98abedc433fdea2683e6e9707b6ae1 |
.reloc |
10752 |
7af94394a45ad940511afd4a76261166 |