How to remove MSVC.exe
MSVC.exe
The module MSVC.exe has been detected as PUP.Gen
File Details
Product Name: | XMRig |
Company Name: | www.xmrig.com |
MD5: | ca501170ba7a73f5a24b6901db729095 |
Size: | 518 KB |
First Published: | 2017-07-12 23:08:05 (7 years ago) |
Latest Published: | 2018-11-08 07:10:18 (6 years ago) |
Status: | PUP.Gen (on last analysis) | |
Analysis Date: | 2018-11-08 07:10:18 (6 years ago) |
Common Places:
%appdata%\isminer |
%appdata%\ieservise |
%appdata%\taloce |
%windir%\temp |
%localappdata%\microsoft\windows\inetcache\ie\z5rohz6o |
%appdata%\smoti2 |
%localappdata%\microsoft\windows\temporary internet files\content.ie5\0rn0xpic |
%sysdrive%\adwcleaner\quarantine\exuieaoeii |
%localappdata%\microsoft\windows\inetcache\ie\5pl4lt2s |
%localappdata%\microsoft\windows\temporary internet files\content.ie5\2jv7vze1 |
File Names:
xmrig.exe |
MSVC.exe |
vorox.exe |
splwow64.exe |
xmrig[1].exe |
xmrig_IObitDel.exe |
WUDFHost.exe |
xm64.exe |
Geography:
27.9% | ||
16.4% | ||
12.3% | ||
3.3% | ||
3.3% | ||
3.3% | ||
3.3% | ||
3.3% | ||
2.5% | ||
1.6% | ||
1.6% | ||
1.6% | ||
1.6% | ||
1.6% | ||
1.6% | ||
0.8% | ||
0.8% | ||
0.8% | ||
0.8% | ||
0.8% | ||
0.8% | ||
0.8% | ||
0.8% | ||
0.8% | ||
0.8% | ||
0.8% | ||
0.8% | ||
0.8% | ||
0.8% | ||
0.8% | ||
0.8% | ||
0.8% | ||
0.8% |
OS Version:
Windows 7 | 47.6% | |
Windows 10 | 37.3% | |
Windows 8.1 | 5.6% | |
Windows Server 2008 R2 | 4.8% | |
Windows 8 | 2.4% | |
Windows Vista | 0.8% | |
Windows Server 2012 | 0.8% | |
Windows Server 2012 R2 | 0.8% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 64 |
Image Base: | 0x0000000000400000 |
Entry Address: | 0x00001500 |
PE Sections:
Name | Size of data | MD5 |
.text | 409088 | 02284afa02d2e527be9f78250388a3b8 |
.data | 1536 | 64739773293be74c800201b849337802 |
.rdata | 56832 | e494fb15165ac618c1f7892da11b1bb7 |
.pdata | 16384 | 95a42d9b317492751869b02ef8a58047 |
.xdata | 15360 | 753dbdf5fa2b7422f3a047403ff6c65a |
.bss | 0 | 00000000000000000000000000000000 |
.idata | 11776 | 270499ddf1aa80442b80aa80d7b52004 |
.CRT | 512 | 119e696cf0e7e6f0172c72d5a62186d8 |
.tls | 512 | 811d648549920a84e64d44b5999ecc21 |
.rsrc | 17360 | 5fb87b448edb7328db9c4a9c78ff7abd |
More information:
Download GridinSoft
Anti-Malware - Removal tool for MSVC.exe