How to remove app_nhm.exe
- File Details
- Overview
- Analysis
app_nhm.exe
The module app_nhm.exe has been detected as Trojan.CoinMiner
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
490eedd65531cb1e6374e59b41ecef49 |
| Size: |
5 MB |
| First Published: |
2020-10-22 09:31:10 (5 years ago) |
| Latest Published: |
2021-07-24 20:46:15 (4 years ago) |
| Status: |
Trojan.CoinMiner (on last analysis) |
|
| Analysis Date: |
2021-07-24 20:46:15 (4 years ago) |
| %localappdata%\programs\nicehash miner |
| %sysdrive%\$recycle.bin\s-1-5-21-3417231984-1246498483-569619165-1001\$rmapa6m |
| %localappdata%\programs\nicehash miner |
| %localappdata%\programs\nicehash miner |
| %profile%\downloads\nhm_windows_3.0.5.1.zip |
| %desktop%\nhm_windows_3.0.5.1.zip |
| %desktop%\new folder (3) |
| %localappdata%\programs\nicehash miner |
| %sysdrive%\загрузки\nhm_windows_3.0.5.1.zip |
| %localappdata%\programs\nicehash miner |
|
25.0% |
|
|
25.0% |
|
|
16.7% |
|
|
8.3% |
|
|
8.3% |
|
|
8.3% |
|
|
8.3% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
64 |
| Image Base: |
|
| Entry Address: |
|
| MVID: |
86825367-cff5-4e8b-b8b8-50a3e5aa7432 |
| Typelib ID: |
14c0b1c1-14f7-4302-8253-a7c8c46c02f4 |
| Name |
Size of data |
MD5 |
| .text |
5754880 |
468bbce59245b3aeb23bbe971dd97565 |
| .rsrc |
287744 |
e4697c082e8771a253af5c43996aa6d2 |