How to remove idle_maintenance.exe
- File Details
- Overview
- Analysis
idle_maintenance.exe
The module idle_maintenance.exe has been detected as Risk.CoinMiner
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
e2af153ed50cb5ef457972e656f1bc51 |
| Size: |
3 MB |
| First Published: |
2020-06-24 04:28:28 (5 years ago) |
| Latest Published: |
2021-01-06 17:26:33 (4 years ago) |
| Status: |
Risk.CoinMiner (on last analysis) |
|
| Analysis Date: |
2021-01-06 17:26:33 (4 years ago) |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
| Windows Server 2012 R2 |
80.0% |
|
| Windows 7 |
20.0% |
|
Analysis
| Subsystem: |
Windows CUI |
| PE Type: |
pe |
| OS Bitness: |
64 |
| Image Base: |
0x0000000000400000 |
| Entry Address: |
0x000014a0 |
| Name |
Size of data |
MD5 |
| .text |
2939392 |
325f00cfb49b74e7e8b31add831fa8d3 |
| .data |
259072 |
4da9522f9155751623d6a38f346993b2 |
| .rdata |
234496 |
1bd5569a2cb2c0dba21091ada0fdab0b |
| .pdata |
91648 |
0296969bf50cab417d44fde65bc5ef37 |
| .xdata |
139776 |
37133d9adde64b1f9962664fdbc4300a |
| .bss |
0 |
00000000000000000000000000000000 |
| .idata |
15360 |
97da822f680d448defc5e53a094a2a22 |
| .CRT |
512 |
b200854b5543611db0b3fbbff20dc48c |
| .tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
| .rsrc |
23776 |
3d53c9bb69a711000fd438820f29ee6d |