How to remove CPU.exe
CPU.exe
The module CPU.exe has been detected as Trojan.CoinMiner
File Details
Product Name: | WINREPORT |
Company Name: | www.alist.com |
MD5: | 758237ab492987bd0d17c021a809e0ea |
Size: | 442 KB |
First Published: | 2017-09-22 11:03:15 (7 years ago) |
Latest Published: | 2017-09-22 11:03:21 (7 years ago) |
Status: | Trojan.CoinMiner (on last analysis) | |
Analysis Date: | 2017-09-22 11:03:21 (7 years ago) |
Common Places:
%temp%\rarsfx9 |
%temp%\rarsfx3 |
%temp%\rarsfx1 |
%temp%\rarsfx4 |
%temp%\rarsfx5 |
%temp%\rarsfx7 |
%temp%\rarsfx8 |
%temp%\rarsfx0 |
%temp%\rarsfx10 |
%temp%\rarsfx6 |
Geography:
100.0% |
OS Version:
Windows 7 | 100.0% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 64 |
Image Base: | 0x0000000140000000 |
Entry Address: | 0x000168cc |
PE Sections:
Name | Size of data | MD5 |
.text | 321024 | be52388e886ff7756512072108531d11 |
.rdata | 103424 | 05ce475adba3391e0fd3da60ce901a54 |
.data | 7168 | a04efb2a218ea72a71db669eb107e0b5 |
.pdata | 15872 | 468e871293e89e797f0fffc677109637 |
.gfids | 512 | aff2be8e5fa9c27d91696ed4c4ca2ce7 |
.rsrc | 1536 | 1fcc2fecb621ed09203cea636fab3980 |
.reloc | 2560 | cc14ca4c8078c62859abd61ed5e520ab |
More information:
Download GridinSoft
Anti-Malware - Removal tool for CPU.exe