How to remove cpu.exe
cpu.exe
The module cpu.exe has been detected as Trojan.CoinMiner
File Details
| Product Name: | FireEye Client |
| Company Name: | FireEye Inc |
| MD5: | e95f766a3748042efbf0f05d823f82b7 |
| Size: | 6 MB |
| First Published: | 2021-02-23 16:37:49 (4 years ago) |
| Latest Published: | 2021-03-08 16:35:06 (4 years ago) |
| Status: | Trojan.CoinMiner (on last analysis) | |
| Analysis Date: | 2021-03-08 16:35:06 (4 years ago) |
Overview
| Signed By: | Google Softe Dev LLC |
| Status: | Valid |
Common Places:
| %appdata%\windows |
Geography:
| 33.3% | ||
| 33.3% | ||
| 33.3% |
OS Version:
| Windows 10 | 50.0% | |
| Windows 8.1 | 25.0% | |
| Windows 7 | 25.0% |
Analysis
| Subsystem: | Windows CUI |
| PE Type: | pe |
| OS Bitness: | 64 |
| Image Base: | 0x0000000140000000 |
| Entry Address: | 0x00b952a4 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .rdata | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .data | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .pdata | 0 | d41d8cd98f00b204e9800998ecf8427e |
| _RANDOMX | 0 | d41d8cd98f00b204e9800998ecf8427e |
| _SHA3_25 | 0 | d41d8cd98f00b204e9800998ecf8427e |
| _TEXT_CN | 0 | d41d8cd98f00b204e9800998ecf8427e |
| _TEXT_CN | 0 | d41d8cd98f00b204e9800998ecf8427e |
| _RDATA | 0 | d41d8cd98f00b204e9800998ecf8427e |
| 0 | 0 | d41d8cd98f00b204e9800998ecf8427e |
| 1 | 6504448 | c28c745ee7e87033ecccc5438f026119 |
| .reloc | 512 | d6b956b433fec4e81f998405a2f04558 |
| .rsrc | 376832 | 47d3361d8abb0815a5ad16ae483624df |
More information:
Download GridinSoft
Anti-Malware - Removal tool for cpu.exe