How to remove MISA.SME2020.CheckValidPrinterSettings.exe
- File Details
- Overview
- Analysis
MISA.SME2020.CheckValidPrinterSettings.exe
The module MISA.SME2020.CheckValidPrinterSettings.exe has been detected as Trojan.CoinMiner
File Details
| Product Name: |
|
| MD5: |
ca36f88ee244773ffc09ae30dc84fdc1 |
| Size: |
14 KB |
| First Published: |
2020-07-25 16:24:15 (5 years ago) |
| Latest Published: |
2021-01-07 13:06:05 (5 years ago) |
| Status: |
Trojan.CoinMiner (on last analysis) |
|
| Analysis Date: |
2021-01-07 13:06:05 (5 years ago) |
| %appdata%\temp\sme2020\winroot\misa jsc\misa sme.net 2020 |
| %appdata%\temp\sme2020\winroot\misa jsc\misa sme.net 2020 |
| %appdata%\temp\misa.sme2019\winroot\misa jsc\misa sme.net 2020 |
| %appdata%\temp\sme2020\winroot\misa jsc\misa sme.net 2020 |
| Windows 10 |
50.0% |
|
| Windows 7 |
50.0% |
|
Analysis
| Subsystem: |
Windows CUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x00004a9e |
| MVID: |
8299ebd9-7719-4344-b171-240525b496a8 |
| Typelib ID: |
d60b1033-f689-49c2-8471-dc9169e17554 |
| Name |
Size of data |
MD5 |
| .text |
11264 |
9da158ad95e2a1b2cd5ce93d2912609c |
| .rsrc |
2048 |
3953062e89e2f468f81bde6c75a25cdf |
| .reloc |
512 |
144eb1ff729c6b8501ad5a915111d212 |