How to remove ee.exe
ee.exe
The module ee.exe has been detected as Trojan.CoinMiner
File Details
MD5: | 3a66ed3c47958347a427417810e3b80a |
Size: | 54 MB |
First Published: | 2021-04-21 20:10:51 (2 years ago) |
Latest Published: | 2021-05-19 20:56:29 (2 years ago) |
Status: | Trojan.CoinMiner (on last analysis) | |
Analysis Date: | 2021-05-19 20:56:29 (2 years ago) |
Common Places:
%temp%\csrss\wup |
%temp%\csrss\wup |
%temp%\csrss\wup |
%temp%\csrss\wup |
%temp%\csrss\wup |
%temp%\csrss\wup |
%temp%\csrss\wup |
%localappdata%\programs\nicehash miner\miner_plugins\e7a58030-94eb-11ea-a64d-17be303ea466\bins |
%temp%\csrss\wup |
%temp%\csrss\wup |
Geography:
52.9% | ||
17.6% | ||
11.8% | ||
5.9% | ||
5.9% | ||
5.9% |
OS Version:
Windows 10 | 100.0% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 64 |
Image Base: | 0x0000000140000000 |
Entry Address: | 0x03a75cd0 |
PE Sections:
Name | Size of data | MD5 |
UPX0 | 0 | d41d8cd98f00b204e9800998ecf8427e |
UPX1 | 57020928 | 84f8754bc7ea5d363f2571062341e801 |
.rsrc | 1536 | b1efb83e00748e9949eb65fea8ee2f39 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for ee.exe