How to remove CPU_32.exe
CPU_32.exe
The module CPU_32.exe has been detected as Trojan.CoinMiner
File Details
Product Name: | WindowsApplication1 |
MD5: | 8f49fe3ad260bae7109a9a32ed8b8ab1 |
Size: | 2 MB |
First Published: | 2017-11-21 19:10:08 (6 years ago) |
Latest Published: | 2018-03-24 22:11:01 (6 years ago) |
Status: | Trojan.CoinMiner (on last analysis) | |
Analysis Date: | 2018-03-24 22:11:01 (6 years ago) |
Common Places:
%commonappdata%\adobe\reader |
%startup% |
File Names:
cpu32.exe |
CPU_32.exe |
Geography:
50.0% | ||
50.0% |
OS Version:
Windows 7 | 100.0% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x001ff71e |
.NET Info:
MVID: | 90f0a741-0f28-4a46-a6b8-3e8057ebd9c7 |
Typelib ID: | a10d5d55-e625-43fd-832c-63b2ecb64bbd |
PE Sections:
Name | Size of data | MD5 |
.text | 2086912 | 0b018a2f10a7504cb970f0e3ca2dd4d5 |
.sdata | 512 | d5eb3f273adcdd23f6d8378b3a558e59 |
.rsrc | 13312 | 47cb2d5933da95620c5f8f0733e8f030 |
.reloc | 512 | 3408020be503c8b2a5354a02965e5103 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for CPU_32.exe