How to remove MSASC.exe
MSASC.exe
The module MSASC.exe has been detected as Trojan.CoinMiner

File Details
Product Name: | XMRig |
Company Name: | www.xmrig.com |
MD5: | 297b93c1605e41ed0f685ee27f95e03e |
Size: | 2 MB |
First Published: | 2020-07-07 09:16:44 (4 years ago) |
Latest Published: | 2021-01-12 14:06:49 (4 years ago) |
Status: | Trojan.CoinMiner (on last analysis) | |
Analysis Date: | 2021-01-12 14:06:49 (4 years ago) |
Common Places:
%windir% |
%sysdrive%\proba 2 nice hash\miner_plugins\0e0a7320-94ec-11ea-a64d-17be303ea466\bins\11.2 |
%localappdata%\programs\nicehash miner\miner_plugins\0e0a7320-94ec-11ea-a64d-17be303ea466\bins\11.2 |
%sysdrive%\perflogs\nhm_windows_3.0.1.0\miner_plugins\0e0a7320-94ec-11ea-a64d-17be303ea466\bins\11.2 |
%appdata%\salad\plugin-bin |
%localappdata%\programs\nicehash miner\miner_plugins\0e0a7320-94ec-11ea-a64d-17be303ea466\bins\11.2 |
%desktop%\майнинг к\вин 10\nhm_windows_3.0.4.4\miner_plugins\0e0a7320-94ec-11ea-a64d-17be303ea466\bins\11.2 |
%desktop%\майнинг к\майнинг\nhm_windows_3.0.4.4\miner_plugins\0e0a7320-94ec-11ea-a64d-17be303ea466\bins\11.2 |
%desktop%\майнинг к\nhm_windows_3.0.4.4\miner_plugins\0e0a7320-94ec-11ea-a64d-17be303ea466\bins\11.2 |
Geography:
50.0% | ||
20.0% | ||
10.0% | ||
10.0% | ||
10.0% |
OS Version:
Windows 10 | 80.0% | |
Windows Server 2008 R2 | 20.0% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 64 |
Image Base: | 0x0000000140000000 |
Entry Address: | 0x0016bd98 |
PE Sections:
Name | Size of data | MD5 |
.text | 1824768 | baabeb8a768b925ea0108607b128a059 |
.rdata | 626688 | 9925ef67a775f2b93ca82e5be1a59824 |
.data | 48640 | cd633449063bcb648a02e74d3047e3d7 |
.pdata | 61952 | d4f182f52a4b2c18b24a982c5f11b8f8 |
_RANDOMX | 2048 | 4c9ad32e381e3b0d5fe17bbaafaae2bf |
_SHA3_25 | 2560 | c14f9aad5e95192cd7523ba6675549fd |
_TEXT_CN | 6656 | 6a7f77e47f77f65bef85036ae5a71106 |
_TEXT_CN | 4608 | 409bf3f918f2402291cb56c2e9354b47 |
_RDATA | 512 | aed49fd7535e6e4bd6ddfae18274e921 |
.rsrc | 23040 | 30d8daf565d5323b91e3cde9caed429e |
.reloc | 10752 | 132bef712c2ef6df2fc5504ac313c46b |
More information:
Download GridinSoft
Anti-Malware - Removal tool for MSASC.exe
