How to remove ex3.exe
ex3.exe
The module ex3.exe has been detected as Trojan.CoinMiner
File Details
| Product Name: | T-Rex NVIDIA GPU miner |
| Company Name: | http://trex-miner.com |
| MD5: | fd9f0b50c221d9c3758a480892d16e17 |
| Size: | 23 MB |
| First Published: | 2021-04-13 20:39:54 (4 years ago) |
| Latest Published: | 2025-04-12 23:02:42 (7 months ago) |
| Status: | Trojan.CoinMiner (on last analysis) | |
| Analysis Date: | 2025-04-12 23:02:42 (7 months ago) |
Common Places:
| %windir% |
| %localappdata%\programs\nicehash miner\miner_plugins\03f80500-94ec-11ea-a64d-17be303ea466\bins |
| %appdata%\kryptex\miners |
| %desktop% |
| %sysdrive%\c\yeni klasör |
| %sysdrive%\aid farhan\downloads\ethereum |
Geography:
| 33.3% | ||
| 16.7% | ||
| 16.7% | ||
| 16.7% | ||
| 16.7% |
OS Version:
| Windows 10 | 83.3% | |
| Windows 8.1 | 16.7% |
Analysis
| Subsystem: | Windows CUI |
| PE Type: | pe |
| OS Bitness: | 64 |
| Image Base: | 0x0000000140000000 |
| Entry Address: | 0x05f8fe26 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .rdata | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .data | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .pdata | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .nv_fatb | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .nvFatBi | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .tls | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .gfids | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .K330 | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .K331 | 24438784 | 3aa3db074f2bcd46165cefdb3f1d571e |
| .reloc | 512 | 0cda8a40fdaa082ccf5007e1d7267a2d |
| .rsrc | 69120 | a9184c4c395d37e07ce5b7cbbaae96aa |
More information:
Download GridinSoft
Anti-Malware - Removal tool for ex3.exe