How to remove MicrosoftHost.exe
- File Details
- Overview
- Analysis
MicrosoftHost.exe
The module MicrosoftHost.exe has been detected as Trojan.CoinMiner
File Details
Product Name: |
|
Company Name: |
|
MD5: |
59d8d25781ef2f69e503c8df7a1bec5f |
Size: |
5 MB |
First Published: |
2023-04-14 23:49:13 (2 years ago) |
Latest Published: |
2024-11-09 23:02:05 (a month ago) |
Status: |
Trojan.CoinMiner (on last analysis) |
|
Analysis Date: |
2024-11-09 23:02:05 (a month ago) |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
|
54.5% |
|
|
12.1% |
|
|
6.1% |
|
|
6.1% |
|
|
3.0% |
|
|
3.0% |
|
|
3.0% |
|
|
3.0% |
|
|
3.0% |
|
|
3.0% |
|
|
3.0% |
|
Windows 10 |
97.0% |
|
Windows 7 |
3.0% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x00345f84 |
Name |
Size of data |
MD5 |
.text |
3652096 |
219452eeef51c388ea7fd0ebd13e0cb4 |
.rdata |
1483264 |
3dfae1c526276020f7a76b80be5240f4 |
.data |
63488 |
962cb4b39bcdfccd76d8614466f5ed99 |
.pdata |
129024 |
6526b8149261923d38af8037e0c580e3 |
_RANDOMX |
3584 |
9ee63642b94966ecb630ee0843e46b26 |
_TEXT_CN |
10240 |
afea7882aa31e5987db2f12b8933de56 |
_TEXT_CN |
4608 |
409bf3f918f2402291cb56c2e9354b47 |
_RDATA |
512 |
b478cebc9aef849cedb949fc75e37c0d |
.rsrc |
64000 |
d3e47930798280f34cd2d3ce74b2b207 |
.reloc |
32768 |
e52c79a77a06c72da24eb0d1679ed097 |