How to remove ethminer.exe
- File Details
- Overview
- Analysis
ethminer.exe
The module ethminer.exe has been detected as Risk.CoinMiner
File Details
MD5: |
a1799a38255e40c644dc18bd9e785121 |
Size: |
1 MB |
First Published: |
2020-01-13 11:35:38 (5 years ago) |
Latest Published: |
2020-11-21 18:22:21 (4 years ago) |
Status: |
Risk.CoinMiner (on last analysis) |
|
Analysis Date: |
2020-11-21 18:22:21 (4 years ago) |
Overview
%appdata%\cudo miner\workloads |
%appdata%\cudo miner\workloads |
%appdata%\cudo miner\workloads |
%sysdrive%\$recycle.bin\s-1-5-21-1593340925-1448411556-465868952-1001\$rlzbevw\registry |
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x000b4b78 |
Name |
Size of data |
MD5 |
.text |
794624 |
695dbf00517cdef1fc1b4b4de88bfe26 |
.rdata |
332288 |
a59698725793fdb594d5a35fc0925c22 |
.data |
26624 |
f61d9371c1b922b334a76347790e1c3f |
.pdata |
42496 |
5cd4af227d9e6433c99bcfe61055c67b |
.nv_fatb |
373248 |
5468ce3b355b2e88638895cddbb6c4fb |
.nvFatBi |
512 |
64e254b12309ba300edb4baeda8ff53e |
.tls |
512 |
c304fac761682721dc55821d6c8ec9b4 |
.gfids |
512 |
f096ebcbd48848aebda16387dafcbb97 |
.rsrc |
2048 |
1dd6501172f5501a2a3a8e3de526c226 |
.reloc |
5120 |
de894945153b1c9fdc0767bf1153f47d |