How to remove Guard.exe
Guard.exe
The module Guard.exe has been detected as Trojan.CoinMiner
File Details
MD5: | 8096be17d57ec79728a71b11c59d5212 |
Size: | 116 KB |
First Published: | 2018-01-11 12:04:31 (7 years ago) |
Latest Published: | 2018-04-13 17:08:57 (6 years ago) |
Status: | Trojan.CoinMiner (on last analysis) | |
Analysis Date: | 2018-04-13 17:08:57 (6 years ago) |
Overview
Signed By: | Garry Lachman |
Status: | Valid |
Common Places:
%programfiles%\system native |
Geography:
14.3% | ||
10.7% | ||
10.7% | ||
10.7% | ||
10.7% | ||
7.1% | ||
7.1% | ||
7.1% | ||
3.6% | ||
3.6% | ||
3.6% | ||
3.6% | ||
3.6% | ||
3.6% |
OS Version:
Windows 10 | 42.9% | |
Windows 7 | 39.3% | |
Windows 8.1 | 17.9% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x00002248 |
PE Sections:
Name | Size of data | MD5 |
.text | 73728 | 88c00f4921e8fa23f691e6bde110df3d |
.rdata | 29184 | 76d15629d8b682c42eefac5e9da39a89 |
.data | 2560 | 6b56c0c98a0bf71b623d254a63590fc3 |
.rsrc | 1024 | b01a018e993e2b19814357c6d9bca22f |
.reloc | 4608 | 4aaa65797cf3c4c8bc22bb3d679f4f2a |
More information:
Download GridinSoft
Anti-Malware - Removal tool for Guard.exe