How to remove hwid changer.exe
- File Details
- Overview
- Analysis
hwid changer.exe
The module hwid changer.exe has been detected as Trojan.CoinMiner
File Details
Product Name: |
|
Company Name: |
|
MD5: |
f91a9eae6dad428b14b82c9dfcd202ba |
Size: |
1 MB |
First Published: |
2018-07-09 16:10:09 (6 years ago) |
Latest Published: |
2020-02-09 03:33:55 (4 years ago) |
Status: |
Trojan.CoinMiner (on last analysis) |
|
Analysis Date: |
2020-02-09 03:33:55 (4 years ago) |
%profile%\downloads |
%profile%\onedrive\desktop\hwid unban\v.02\hwid ban v.02\hwid unban\v.02 |
%sysdrive%\hw\free spoofers\free spoofers\marsh's spooferr.rar |
%profile% |
hardware.exe |
hwid changer.exe |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000531d1 |
Name |
Size of data |
MD5 |
.text |
666112 |
afcc9f56f9243dc1080567a021dcee42 |
.rdata |
101888 |
bedb823e9117bedd75b2d52ac8979113 |
.data |
86016 |
e97bce23aa40adabe394f2f89a4dbbbc |
.rsrc |
940544 |
b81ae399614849d6472f389de1dc13a0 |
.reloc |
39424 |
f0de55e08f9a08958346eb0051b2ef6f |