How to remove Window.exe
Window.exe
The module Window.exe has been detected as Trojan.CoinMiner
File Details
| Product Name: | XMRig |
| Company Name: | www.micosoft.com |
| MD5: | d0760e953084de707620cceb6a8e4366 |
| Size: | 3 MB |
| First Published: | 2019-06-25 18:55:15 (6 years ago) |
| Latest Published: | 2021-05-20 20:39:26 (4 years ago) |
| Status: | Trojan.CoinMiner (on last analysis) | |
| Analysis Date: | 2021-05-20 20:39:26 (4 years ago) |
Common Places:
| %windir% |
Geography:
| 100.0% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows CUI |
| PE Type: | pe |
| OS Bitness: | 64 |
| Image Base: | 0x0000000000400000 |
| Entry Address: | 0x000014f0 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 3006464 | 21028071636deda1a6d2b266c6b4ce7b |
| .data | 25088 | 7804f650f8b8684eb2684860089463c8 |
| .rdata | 616960 | 4a203ca386902fc375dfaf535550c991 |
| .pdata | 109568 | cc2009d1d6c27faedb1bc211c90adbbe |
| .xdata | 97792 | 7b6dd6fa8e61baee3f674b52f7094474 |
| .bss | 0 | 00000000000000000000000000000000 |
| .edata | 1536 | cf33fdc035f9cd6868e8459032486842 |
| .idata | 15360 | 9c91ab4a23286377f172765eae7a8c3c |
| .CRT | 512 | e11f0cf8d8ef423b4556eacb54279a59 |
| .tls | 512 | bf619eac0cdf3f68d496ea9344137e8b |
| .rsrc | 79872 | f387e9760b8aee5ca9054230ebb0f0de |
| .reloc | 27136 | e13baba1f1a14978c193e7f5ee834b6b |
More information:
Download GridinSoft
Anti-Malware - Removal tool for Window.exe