How to remove calcX.exe
calcX.exe
The module calcX.exe has been detected as Risk.CoinMiner
File Details
| Product Name: | XMRig |
| Company Name: | www.xmrig.com |
| MD5: | ae90768c0f9637441c95502d8e50fab0 |
| Size: | 913 KB |
| First Published: | 2018-10-20 13:07:59 (7 years ago) |
| Latest Published: | 2024-12-07 23:02:23 (a year ago) |
| Status: | Risk.CoinMiner (on last analysis) | |
| Analysis Date: | 2024-12-07 23:02:23 (a year ago) |
Common Places:
| %windir% |
| %appdata% |
| %appdata% |
| %sysdrive%\install\miner |
File Names:
| xqwkceo.exe |
| calcX.exe |
Geography:
| 33.3% | ||
| 25.0% | ||
| 25.0% | ||
| 8.3% | ||
| 8.3% |
OS Version:
| Windows 7 | 46.2% | |
| Windows Server 2008 R2 | 30.8% | |
| Windows Server 2016 | 7.7% | |
| Windows Server 2012 R2 | 7.7% | |
| Windows Server 2012 | 7.7% |
Analysis
| Subsystem: | Windows CUI |
| PE Type: | pe |
| OS Bitness: | 64 |
| Image Base: | 0x0000000140000000 |
| Entry Address: | 0x00063ac4 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 705024 | cd9a3b813452cb518037df6f91f1e5fc |
| .rdata | 140288 | 0654087a709cd7ba66a6eb42b3c0c41c |
| .data | 34304 | 7ae5542c731e6eca1d39a76eea2199d0 |
| .pdata | 24576 | 91f903a42e03e558416f2a6c8d5d385f |
| _TEXT_CN | 3584 | b3092c78cb64bf57243ac2e3fe9bd3d6 |
| .rsrc | 23040 | 31ba50cc1cbe4ab5b100f17f7e88e653 |
| .reloc | 3584 | ce9134a6ce7cf7e791ee0cd1b6b2d2e7 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for calcX.exe