How to remove hwid changer.exe

hwid changer.exe

The module hwid changer.exe has been detected as Trojan.CoinMiner

hwid changer.exe
Product Name:

virtualhardwares

Company Name:

virtualhardwares

MD5: f91a9eae6dad428b14b82c9dfcd202ba
Size: 1 MB
First Published: 2018-07-09 16:10:09 (6 years ago)
Latest Published: 2020-02-09 03:33:55 (4 years ago)
Status: Trojan.CoinMiner (on last analysis)
Analysis Date: 2020-02-09 03:33:55 (4 years ago)
%profile%\downloads
%profile%\onedrive\desktop\hwid unban\v.02\hwid ban v.02\hwid unban\v.02
%sysdrive%\hw\free spoofers\free spoofers\marsh's spooferr.rar
%profile%
hardware.exe
hwid changer.exe
25.0%
25.0%
25.0%
25.0%
Windows 10 100.0%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x000531d1

PE Sections:

Name Size of data MD5
.text 666112 afcc9f56f9243dc1080567a021dcee42
.rdata 101888 bedb823e9117bedd75b2d52ac8979113
.data 86016 e97bce23aa40adabe394f2f89a4dbbbc
.rsrc 940544 b81ae399614849d6472f389de1dc13a0
.reloc 39424 f0de55e08f9a08958346eb0051b2ef6f

More information:

Download GridinSoft Anti-Malware - Removal tool for hwid changer.exe