How to remove WinUpdate.exe
- File Details
- Overview
- Analysis
WinUpdate.exe
The module WinUpdate.exe has been detected as Trojan.CoinMiner
File Details
Product Name: |
|
MD5: |
16b0f12ec4a743ae41c8767e413c2b8f |
Size: |
447 KB |
First Published: |
2018-08-08 04:05:43 (6 years ago) |
Latest Published: |
2020-12-17 15:49:09 (3 years ago) |
Status: |
Trojan.CoinMiner (on last analysis) |
|
Analysis Date: |
2020-12-17 15:49:09 (3 years ago) |
%temp% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
Windows 7 |
92.3% |
|
Windows 10 |
7.7% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00140140 |
Name |
Size of data |
MD5 |
.MPRESS1 |
244736 |
7d110c9161de2355ccb4b129e0fe75f4 |
.MPRESS2 |
3584 |
6d8abb97cb7d7c84efb63f421381e93c |
.rsrc |
209408 |
c8ca8cffee0fe02d05ded29db6f0e307 |