How to remove ffprobe.exe

ffprobe.exe

The module ffprobe.exe has been detected as Trojan.CoinMiner

ffprobe.exe
MD5: 3d4cd928c51546c1c26a60a6b56fc595
Size: 32 MB
First Published: 2017-05-28 13:03:32 (7 years ago)
Latest Published: 2020-09-18 21:02:13 (4 years ago)
Status: Trojan.CoinMiner (on last analysis)
Analysis Date: 2020-09-18 21:02:13 (4 years ago)
%localappdata%\youtubedownloaderguru\ffmpeg
%localappdata%\youtubedownloaderguru
%localappdata%\youtubedownloaderguru
%localappdata%\youtubedownloaderguru
%localappdata%\youtubedownloaderguru
63.6%
18.2%
13.6%
4.5%
Windows 10 68.2%
Windows 7 18.2%
Windows Vista 13.6%
Subsystem: Windows CUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x000014e0

PE Sections:

Name Size of data MD5
.text 26209280 b0ab42846bff66556742d88ee40e94fd
.rotext 112128 36d46df0f54bd20ef61f1e1930b6fe27
.data 311808 cf2376850b1fd9c02907b93b515fb9ad
.rdata 7309312 31ea2f5a55a1b23122dbc841d35d86b2
.rodata 85504 b7cbe92705b4fbb028e6d57ede77deba
.bss 0 00000000000000000000000000000000
.idata 15872 cfad50d76bd1ee9be752fa6a7904ca11
.CRT 512 3e0ebdbbee08d6db68bf8be66559b651
.tls 512 779e4527abbb9fe991d9e2bd7c0c23ff

More information:

Download GridinSoft Anti-Malware - Removal tool for ffprobe.exe