How to remove dether.exe
dether.exe
The module dether.exe has been detected as Risk.CoinMiner
File Details
Product Name: | XMRig-AMD |
Company Name: | www.xmrig.com |
MD5: | 60ca5ae9bbcd6d7f9f37f311ba75d6b4 |
Size: | 972 KB |
First Published: | 2018-10-18 16:14:33 (6 years ago) |
Latest Published: | 2019-03-29 11:36:10 (5 years ago) |
Status: | Risk.CoinMiner (on last analysis) | |
Analysis Date: | 2019-03-29 11:36:10 (5 years ago) |
Common Places:
%appdata%\adobe\x64v8 |
%appdata%\adobe\x64v8 |
Geography:
50.0% | ||
14.3% | ||
7.1% | ||
7.1% | ||
7.1% | ||
7.1% | ||
7.1% |
OS Version:
Windows 7 | 92.9% | |
Windows 8.1 | 7.1% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 64 |
Image Base: | 0x0000000140000000 |
Entry Address: | 0x0003f1d4 |
PE Sections:
Name | Size of data | MD5 |
.text | 616448 | 7570962a77712bf1f41eef820f474b32 |
.rdata | 285696 | cfb921848bed9b0b859fcf606914e8a3 |
.data | 35328 | 10ed38d588bc8527f5eae3f11029f49a |
.pdata | 29184 | 9637aa27b72ac1aadb4d35ba23998cd6 |
.rsrc | 23040 | c0c5f860b8ecb9c38a8932821307a44b |
.reloc | 5120 | d5f03077fa267cadc6a10de648969aeb |
More information:
Download GridinSoft
Anti-Malware - Removal tool for dether.exe