How to remove NVDisplay.Container.exe
- File Details
- Overview
- Analysis
NVDisplay.Container.exe
The module NVDisplay.Container.exe has been detected as Trojan.CoinMiner
File Details
Product Name: |
|
Company Name: |
|
MD5: |
40532ea36c2d4de56522ecf707bf289e |
Size: |
38 MB |
First Published: |
2022-12-25 23:13:51 (2 years ago) |
Latest Published: |
2024-10-16 23:01:06 (9 months ago) |
Status: |
Trojan.CoinMiner (on last analysis) |
|
Analysis Date: |
2024-10-16 23:01:06 (9 months ago) |
%temp% |
%temp% |
%appdata%\kryptex\miners |
%desktop% |
%appdata%\kryptex\miners |
%mydoc%\ssd mining |
%commonappdata%\salad\workloads |
%commonappdata%\salad\workloads\_downloads |
%commonappdata%\salad\workloads |
%appdata%\kryptex\miners |
|
21.4% |
|
|
21.4% |
|
|
14.3% |
|
|
14.3% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x023560b9 |
Name |
Size of data |
MD5 |
.text |
5165568 |
ce78ff14a56244e8aa5d2d74b0795f6c |
.rdata |
27298816 |
f889fbbb0ab3ddb22a1f5305f914ccbd |
.data |
126464 |
62e21915eacdc0ef17327db489d85fb3 |
.pdata |
182272 |
1a2c72f0670036ed5b302c31e1d8ef5f |
_RDATA |
512 |
6edf85c27d35108d52caa7c7457f58b1 |
.Wye0 |
3910656 |
d8aee4736696c37785ef486979efd06b |
.Wye1 |
4096 |
f8cb387abcf64189b3b9148d64f09d3f |
.Wye2 |
3344896 |
1ecaef66b43004c2cfe34c6b889588e4 |
.reloc |
41984 |
e32d228896fed0436d651d8e5cb48de2 |
.rsrc |
69120 |
8c223925b6681aec3c3f4a258c24010f |