How to remove ffprobe.exe
- File Details
- Overview
- Analysis
ffprobe.exe
The module ffprobe.exe has been detected as Trojan.CoinMiner
File Details
MD5: |
3d4cd928c51546c1c26a60a6b56fc595 |
Size: |
32 MB |
First Published: |
2017-05-28 13:03:32 (7 years ago) |
Latest Published: |
2020-09-18 21:02:13 (4 years ago) |
Status: |
Trojan.CoinMiner (on last analysis) |
|
Analysis Date: |
2020-09-18 21:02:13 (4 years ago) |
%localappdata%\youtubedownloaderguru\ffmpeg |
%localappdata%\youtubedownloaderguru |
%localappdata%\youtubedownloaderguru |
%localappdata%\youtubedownloaderguru |
%localappdata%\youtubedownloaderguru |
Windows 10 |
68.2% |
|
Windows 7 |
18.2% |
|
Windows Vista |
13.6% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000014e0 |
Name |
Size of data |
MD5 |
.text |
26209280 |
b0ab42846bff66556742d88ee40e94fd |
.rotext |
112128 |
36d46df0f54bd20ef61f1e1930b6fe27 |
.data |
311808 |
cf2376850b1fd9c02907b93b515fb9ad |
.rdata |
7309312 |
31ea2f5a55a1b23122dbc841d35d86b2 |
.rodata |
85504 |
b7cbe92705b4fbb028e6d57ede77deba |
.bss |
0 |
00000000000000000000000000000000 |
.idata |
15872 |
cfad50d76bd1ee9be752fa6a7904ca11 |
.CRT |
512 |
3e0ebdbbee08d6db68bf8be66559b651 |
.tls |
512 |
779e4527abbb9fe991d9e2bd7c0c23ff |