How to remove BIT2B73.tmp
- File Details
- Overview
- Analysis
BIT2B73.tmp
The module BIT2B73.tmp has been detected as Trojan.CoinMiner
File Details
Product Name: |
|
MD5: |
49aed35b5daea850b8a6d0402b8218a9 |
Size: |
1 MB |
First Published: |
2017-10-16 06:04:46 (7 years ago) |
Latest Published: |
2018-07-25 17:07:50 (6 years ago) |
Status: |
Trojan.CoinMiner (on last analysis) |
|
Analysis Date: |
2018-07-25 17:07:50 (6 years ago) |
%sysdrive%\msvc |
%appdata%\msvc |
%appdata%\winhost |
%appdata%\apk |
%appdata% |
%sysdrive% |
%sysdrive%\$windows.~tmp\backup\user\user\appdata\roaming |
msvc.exe |
BIT2B73.tmp |
BIT4222.tmp |
BIT1234.tmp |
BIT4431.tmp |
Windows 10 |
48.0% |
|
Windows 7 |
48.0% |
|
Windows 8 |
4.0% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000000400000 |
Entry Address: |
0x00001510 |
Name |
Size of data |
MD5 |
.text |
581120 |
34000d13a022d076d27bab222c409b27 |
.data |
1536 |
b4cf67f93bd6355ec4b76c7f09d65e6a |
.rdata |
67072 |
f4fef0b1917766571e5de7f40f0f3224 |
.pdata |
21504 |
091e48fecb679740ef5cd6ad602ce995 |
.xdata |
19456 |
4cc7b80ee3bc984cbf69e53109bc76dd |
.bss |
0 |
00000000000000000000000000000000 |
.idata |
11776 |
43459538a203b65b634dbbc6a9a06b52 |
.CRT |
512 |
b2a84d17f9f3ea8d1fefe965c1097152 |
.tls |
512 |
4ef93367339f74ca704c65f026b1cb99 |
.rsrc |
372416 |
d47d2cf8fc92d22915dc3aedd847d2fe |