How to remove MSASC.exe

MSASC.exe

The module MSASC.exe has been detected as Trojan.CoinMiner

MSASC.exe
Product Name:

XMRig

Company Name:

www.xmrig.com

MD5: 297b93c1605e41ed0f685ee27f95e03e
Size: 2 MB
First Published: 2020-07-07 09:16:44 (4 years ago)
Latest Published: 2021-01-12 14:06:49 (4 years ago)
Status: Trojan.CoinMiner (on last analysis)
Analysis Date: 2021-01-12 14:06:49 (4 years ago)
%windir%
%sysdrive%\proba 2 nice hash\miner_plugins\0e0a7320-94ec-11ea-a64d-17be303ea466\bins\11.2
%localappdata%\programs\nicehash miner\miner_plugins\0e0a7320-94ec-11ea-a64d-17be303ea466\bins\11.2
%sysdrive%\perflogs\nhm_windows_3.0.1.0\miner_plugins\0e0a7320-94ec-11ea-a64d-17be303ea466\bins\11.2
%appdata%\salad\plugin-bin
%localappdata%\programs\nicehash miner\miner_plugins\0e0a7320-94ec-11ea-a64d-17be303ea466\bins\11.2
%desktop%\майнинг к\вин 10\nhm_windows_3.0.4.4\miner_plugins\0e0a7320-94ec-11ea-a64d-17be303ea466\bins\11.2
%desktop%\майнинг к\майнинг\nhm_windows_3.0.4.4\miner_plugins\0e0a7320-94ec-11ea-a64d-17be303ea466\bins\11.2
%desktop%\майнинг к\nhm_windows_3.0.4.4\miner_plugins\0e0a7320-94ec-11ea-a64d-17be303ea466\bins\11.2
50.0%
20.0%
10.0%
10.0%
10.0%
Windows 10 80.0%
Windows Server 2008 R2 20.0%
Subsystem: Windows CUI
PE Type: pe
OS Bitness: 64
Image Base: 0x0000000140000000
Entry Address: 0x0016bd98

PE Sections:

Name Size of data MD5
.text 1824768 baabeb8a768b925ea0108607b128a059
.rdata 626688 9925ef67a775f2b93ca82e5be1a59824
.data 48640 cd633449063bcb648a02e74d3047e3d7
.pdata 61952 d4f182f52a4b2c18b24a982c5f11b8f8
_RANDOMX 2048 4c9ad32e381e3b0d5fe17bbaafaae2bf
_SHA3_25 2560 c14f9aad5e95192cd7523ba6675549fd
_TEXT_CN 6656 6a7f77e47f77f65bef85036ae5a71106
_TEXT_CN 4608 409bf3f918f2402291cb56c2e9354b47
_RDATA 512 aed49fd7535e6e4bd6ddfae18274e921
.rsrc 23040 30d8daf565d5323b91e3cde9caed429e
.reloc 10752 132bef712c2ef6df2fc5504ac313c46b

More information:

Download GridinSoft Anti-Malware - Removal tool for MSASC.exe