How to remove developer_mode.exe

developer_mode.exe

The module developer_mode.exe has been detected as Trojan.CoinMiner

developer_mode.exe
MD5: 4cc01eeeee8bebe5655f257874e4b254
Size: 86 KB
First Published: 2019-08-13 17:39:22 (5 years ago)
Latest Published: 2025-05-09 23:00:54 (2 weeks ago)
Status: Trojan.CoinMiner (on last analysis)
Analysis Date: 2025-05-09 23:00:54 (2 weeks ago)
%commonappdata%\salfisher47\autouwp launcher
%commonappdata%\salfisher47\autouwp launcher
%commonappdata%\salfisher47\autouwp launcher
%commonappdata%\salfisher47\autouwp launcher
%commonappdata%\salfisher47\autouwp launcher
%commonappdata%\salfisher47\autouwp launcher
%commonappdata%\salfisher47\autouwp launcher
%commonappdata%\salfisher47\autouwp launcher
%commonappdata%\salfisher47\autouwp launcher
%commonappdata%\salfisher47\autouwp launcher
31.1%
11.0%
9.6%
8.2%
4.1%
4.1%
2.7%
2.7%
2.7%
2.7%
2.3%
1.4%
1.4%
1.4%
1.4%
1.4%
1.4%
1.4%
1.4%
1.4%
1.4%
1.4%
1.4%
1.4%
0.9%
Windows 10 96.4%
Windows 7 2.7%
Windows 8.1 0.9%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00001000

PE Sections:

Name Size of data MD5
.code 14336 d8af5494a902a4276e7a118e639a9058
.text 53248 3d44adf99d47c66df6ed2c6ecde44714
.rdata 13312 e4a2346f39e8c4c981487f3b09547faf
.data 4608 7e59eb51f27f76affdb158d945b25143
.rsrc 1536 8b525e09d9adc3912fb8ccc7d7b33b81

More information:

Download GridinSoft Anti-Malware - Removal tool for developer_mode.exe