How to remove BIT1FD3.tmp
- File Details
- Overview
- Analysis
BIT1FD3.tmp
The module BIT1FD3.tmp has been detected as Trojan.CoinMiner
File Details
Product Name: |
|
MD5: |
19fb79b02add3ae677bb353656104656 |
Size: |
792 KB |
First Published: |
2017-10-25 08:00:49 (7 years ago) |
Latest Published: |
2018-11-15 13:11:21 (6 years ago) |
Status: |
Trojan.CoinMiner (on last analysis) |
|
Analysis Date: |
2018-11-15 13:11:21 (6 years ago) |
%appdata%\migwiz |
%appdata%\msvc |
%appdata%\appdata |
%appdata%\include |
%appdata%\ctool |
%appdata%\coresvc |
%appdata%\ieservise |
%sysdrive%\msvc |
%appdata% |
%sysdrive% |
|
36.6% |
|
|
32.4% |
|
|
8.5% |
|
|
7.0% |
|
|
4.2% |
|
|
4.2% |
|
|
2.8% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
Windows 7 |
62.5% |
|
Windows 10 |
29.2% |
|
Windows 8.1 |
5.6% |
|
Windows 8 |
2.8% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000000400000 |
Entry Address: |
0x00001510 |
Name |
Size of data |
MD5 |
.text |
581120 |
34000d13a022d076d27bab222c409b27 |
.data |
1536 |
b4cf67f93bd6355ec4b76c7f09d65e6a |
.rdata |
67072 |
8e0a61d4274fecbce755187089555a37 |
.pdata |
21504 |
091e48fecb679740ef5cd6ad602ce995 |
.xdata |
19456 |
4cc7b80ee3bc984cbf69e53109bc76dd |
.bss |
0 |
00000000000000000000000000000000 |
.idata |
11776 |
43459538a203b65b634dbbc6a9a06b52 |
.CRT |
512 |
b2a84d17f9f3ea8d1fefe965c1097152 |
.tls |
512 |
4ef93367339f74ca704c65f026b1cb99 |
.rsrc |
106304 |
d2cfc180f3290f86bd7aa01fb606a013 |