How to remove FileAssociations.exe

FileAssociations.exe

The module FileAssociations.exe has been detected as Trojan.CoinMiner

FileAssociations.exe
Product Name:

Win

Company Name:

Microsoft

MD5: 7c4fd2c38d9b4883a3376c52a0acaa65
Size: 394 KB
First Published: 2026-03-03 23:01:46 (5 days ago)
Latest Published: 2026-03-03 23:01:46 (5 days ago)
Status: Trojan.CoinMiner (on last analysis)
Analysis Date: 2026-03-03 23:01:46 (5 days ago)
%profile%\downloads\compressed\sfvip-player_by_salezli_v1.2.7.65_x64
100.0%
Windows 10 100.0%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00003670

PE Sections:

Name Size of data MD5
.text 176128 6805a78c569a1d85aabd684522fa4102
.data 4096 620f0b67a91f7f74151bc5be745b7110
.rsrc 4096 ad2258ec082ba8cd49e94df0ad7fab11

More information:

Download GridinSoft Anti-Malware - Removal tool for FileAssociations.exe