How to remove BIT8C2E.tmp
- File Details
- Overview
- Analysis
BIT8C2E.tmp
The module BIT8C2E.tmp has been detected as Trojan.CoinMiner
File Details
Product Name: |
|
MD5: |
a7041ce636038312ef2f2de185b301ca |
Size: |
930 KB |
First Published: |
2017-10-24 06:03:32 (7 years ago) |
Latest Published: |
2018-10-19 15:13:39 (6 years ago) |
Status: |
Trojan.CoinMiner (on last analysis) |
|
Analysis Date: |
2018-10-19 15:13:39 (6 years ago) |
%appdata%\msvc |
%appdata%\speech |
%appdata%\ngcctnr |
%appdata%\nvidia |
%appdata%\appdata |
%sysdrive%\msvc |
%sysdrive% |
%appdata% |
msvc.exe |
BIT8C2E.tmp |
BITFDA1.tmp |
BIT7AAF.tmp |
BIT6CEC.tmp |
BITFFB4.tmp |
BIT2D0A.tmp |
BIT9C46.tmp |
|
67.9% |
|
|
7.5% |
|
|
7.5% |
|
|
5.7% |
|
|
3.8% |
|
|
1.9% |
|
|
1.9% |
|
|
1.9% |
|
|
1.9% |
|
Windows 7 |
53.1% |
|
Windows 10 |
28.6% |
|
Windows 8 |
14.3% |
|
Windows 8.1 |
4.1% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00001500 |
Name |
Size of data |
MD5 |
.text |
662528 |
1276f90db113f233118ba6e2aa5f5a62 |
.data |
1024 |
c3466a9f1466af723f141d1dc63aab82 |
.rdata |
61952 |
01f1c42abf443e983789631c447d9c39 |
.eh_fram |
110080 |
03c00babff1e3e99f15f28b3c6fef4a5 |
.bss |
0 |
00000000000000000000000000000000 |
.idata |
8704 |
7f5decfd917023f9195814d1e7f37185 |
.CRT |
512 |
7afa79e754c255ff3514759f6037c57f |
.tls |
512 |
3b8b87a115df9e15a7d3f5ac85066412 |
.rsrc |
106304 |
1c6ff665b963e4ce2d1836952db3a7e2 |