How to remove NexusRootToolkit.exe
- File Details
- Overview
- Analysis
NexusRootToolkit.exe
The module NexusRootToolkit.exe has been detected as Risk.CoinMiner
File Details
MD5: |
4190644b4dbbc22d46dcf015a3753231 |
Size: |
2 MB |
First Published: |
2017-10-03 12:10:48 (7 years ago) |
Latest Published: |
2018-06-26 15:09:23 (6 years ago) |
Status: |
Risk.CoinMiner (on last analysis) |
|
Analysis Date: |
2018-06-26 15:09:23 (6 years ago) |
Overview
%programfiles%\wugfresh development\nexus root toolkit |
%sysdrive%\$recycle.bin\s-1-5-21-1738228844-298145117-2214621746-1001 |
%programfiles%\wugfresh development |
%profile%\downloads |
%profile%\downloads\=samsung=\nrt |
%profile%\downloads\=samsung= |
Windows 10 |
50.0% |
|
Windows 7 |
50.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00027f4a |
Name |
Size of data |
MD5 |
.text |
581120 |
c2c2260508750422d20cd5cbb116b146 |
.rdata |
188928 |
4513b58651e3d8d87c81a396e5b2f1d1 |
.data |
20992 |
c2de4a3d214eae7e87c7bfc06bd79775 |
.rsrc |
2041344 |
650143ccdfa9095bb13f3dcfe8016e51 |
.reloc |
29184 |
1254908a9a03d2bcf12045d49cd572b9 |