How to remove __installer.exe
- File Details
- Overview
- Analysis
__installer.exe
The module __installer.exe has been detected as Risk.CoinMiner
File Details
Product Name: |
|
Company Name: |
|
MD5: |
f0acb24fb4a78b4cb4b778206376b893 |
Size: |
40 MB |
First Published: |
2019-05-17 04:18:23 (6 years ago) |
Latest Published: |
2021-01-01 18:06:13 (4 years ago) |
Status: |
Risk.CoinMiner (on last analysis) |
|
Analysis Date: |
2021-01-01 18:06:13 (4 years ago) |
Overview
%appdata% |
%profile% |
%appdata% |
%localappdata%\packages\microsoft.microsoftedge_8wekyb3d8bbwe\tempstate |
%appdata% |
%sysdrive%\applications\software |
%sysdrive%\olive |
%sysdrive%\olive |
%appdata% |
%appdata% |
|
27.3% |
|
|
27.3% |
|
|
18.2% |
|
|
9.1% |
|
|
9.1% |
|
|
9.1% |
|
Windows 10 |
90.9% |
|
Windows 8.1 |
9.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0000338f |
Name |
Size of data |
MD5 |
.text |
26624 |
2df06693054d4889a2db11a8fe1a5a85 |
.rdata |
5632 |
966a3835fd2d9407261ae78460c26dcc |
.data |
1536 |
db8f31a08a2242d80c29e1f9500c6527 |
.ndata |
0 |
00000000000000000000000000000000 |
.rsrc |
380416 |
0fa2bc92bf9fa3456fdb6e8ae434d2da |