How to remove ccminer.exe
- File Details
- Overview
- Analysis
ccminer.exe
The module ccminer.exe has been detected as Trojan.CoinMiner
File Details
| MD5: |
ac2b423eaa657f675fc15d91f377be80 |
| Size: |
10 MB |
| First Published: |
2017-05-24 11:10:14 (8 years ago) |
| Latest Published: |
2024-12-07 23:04:32 (a year ago) |
| Status: |
Trojan.CoinMiner (on last analysis) |
|
| Analysis Date: |
2024-12-07 23:04:32 (a year ago) |
| %sysdrive%\zec |
| %profile%\downloads\telegram desktop\ccminer-cryptonight_20140926.rar\ccminer-cryptonight_20140926 |
| %sysdrive%\$recycle.bin\s-1-5-21-3811613556-1706341136-3822798628-1001\$rqwya15 |
| %profile%\downloads\ccminer-cryptonight_20140926.zip |
| %localappdata%\temp |
| %windir%\syswow64 |
| %appdata%\ieserv |
| %appdata%\msvc |
| %windir%\system32 |
| %appdata%\ielast |
| svchosts.exe |
| ccminer.exe |
| MSVCCUDA.exe |
| BITC064.tmp |
| atieclxx.exe |
| BITEA1E.tmp |
| sync_f.exe |
| wsrss.exe |
|
23.7% |
|
|
21.5% |
|
|
10.8% |
|
|
9.7% |
|
|
5.4% |
|
|
4.3% |
|
|
3.2% |
|
|
3.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
| Windows 7 |
43.0% |
|
| Windows 10 |
36.6% |
|
| Windows 8.1 |
10.8% |
|
| Windows 8 |
9.7% |
|
Analysis
| Subsystem: |
Windows CUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x0004ce74 |
| Name |
Size of data |
MD5 |
| .text |
313344 |
5f5bd6497f3a7604629a4aa5a4b66343 |
| .rdata |
64512 |
4f36fbcdb420d6b031b474e331d3e492 |
| .data |
3072 |
9181709b02502150578e86d3bf247068 |
| .nv_fatb |
10452992 |
ae889f2e3abe0dc5d5f6d2922180f184 |
| .nvFatBi |
512 |
5ea3fc57f697b0bb1868530841553292 |
| .rsrc |
512 |
bfeea522869b9254a82eb4e10f655514 |
| .reloc |
39936 |
dd0b552fd5a28254e4ea0fddc589683b |