How to remove B96CC4A8AD78.sys
- File Details
- Overview
- Analysis
B96CC4A8AD78.sys
The module B96CC4A8AD78.sys has been detected as Risk.CoinMiner
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
83b77957421ff0595b96ada634df885e |
| Size: |
24 KB |
| First Published: |
2020-06-19 06:32:49 (5 years ago) |
| Latest Published: |
2023-01-26 23:13:59 (2 years ago) |
| Status: |
Risk.CoinMiner (on last analysis) |
|
| Analysis Date: |
2023-01-26 23:13:59 (2 years ago) |
Overview
| %windir% |
| %windir% |
| %windir% |
| %windir% |
| %windir% |
| %windir% |
| %windir% |
| %windir% |
| %windir% |
| %windir% |
|
11.6% |
|
|
7.0% |
|
|
5.9% |
|
|
5.8% |
|
|
4.3% |
|
|
3.6% |
|
|
3.6% |
|
|
3.5% |
|
|
3.4% |
|
|
3.2% |
|
|
2.8% |
|
|
2.8% |
|
|
2.4% |
|
|
2.3% |
|
|
2.3% |
|
|
2.2% |
|
|
1.4% |
|
|
1.3% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.6% |
|
|
0.6% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
| Windows 10 |
76.1% |
|
| Windows 7 |
16.9% |
|
| Windows 8.1 |
5.8% |
|
| Windows 8 |
1.0% |
|
| Windows Vista |
0.1% |
|
Analysis
| Subsystem: |
Native |
| PE Type: |
pe |
| OS Bitness: |
64 |
| Image Base: |
0x0000000000010000 |
| Entry Address: |
0x00007064 |
| Name |
Size of data |
MD5 |
| .text |
9216 |
c3b85b8b3adf8a3c840404e827a892ff |
| .rdata |
1024 |
929c9bc089e5c511a46d66b4bcd1ea17 |
| .data |
512 |
9101435c01cb6b969a5a519e0b296bc3 |
| .pdata |
512 |
148e39d3f96fba34f8616d7e2de51e69 |
| INIT |
1536 |
390ed7e957d342f06a4f2ec6677505a4 |
| .rsrc |
1024 |
466332388bf098c5029f38e96b928b8c |
| .reloc |
512 |
2cad62a266405f4ef847f07e68a307c8 |