How to remove li1ew.exe
li1ew.exe
The module li1ew.exe has been detected as General Threat
File Details
Product Name: | XMRig |
Company Name: | www.xmrig.com |
MD5: | d5a3b33088282af0723ac9e82d7c0389 |
Size: | 634 KB |
First Published: | 2017-05-26 16:11:23 (7 years ago) |
Latest Published: | 2018-11-15 02:04:09 (6 years ago) |
Status: | General Threat (on last analysis) | |
Analysis Date: | 2018-11-15 02:04:09 (6 years ago) |
Common Places:
%appdata%\appdata |
%appdata%\ieservise |
%appdata%\smotri2 |
%appdata%\testservice |
%appdata%\msvc |
%windir%\temp\_avast_ |
%appdata%\taloce |
%appdata%\smoti2 |
%appdata%\runspeed |
%appdata%\samika |
File Names:
xmrig32.exe |
li1ew.exe |
MSVC.exe |
llkq.exe |
unp102125.tmp |
BIT688D.tmp |
BIT2902.tmp |
BIT267E.tmp |
BIT68C7.tmp |
BIT287D.tmp |
kota.exe |
BIT9335.tmp |
BIT7B2A.tmp |
BITAD70.tmp |
BIT1D33.tmp |
ptica.exe |
BITCAA7.tmp |
vorox.exe |
BITACF3.tmp |
moloko.exe |
unp94029816.tmp |
BIT3D9.tmp |
BITC296.tmp |
BIT46FD.tmp |
BIT6BB2.tmp |
BIT23D7.tmp |
BIT169E.tmp |
BIT9283.tmp |
BIT402D.tmp |
BITC66C.tmp |
BITF604.tmp |
BIT705.tmp |
BIT16FC.tmp |
BITF3A5.tmp |
BIT4FF7.tmp |
kvas.exe |
BIT77B5.tmp |
BIT12EC.tmp |
BITA2B9.tmp |
BITA7CB.tmp |
BIT1BC9.tmp |
BITAF1E.tmp |
BIT6CF0.tmp |
Geography:
25.5% | ||
15.4% | ||
8.2% | ||
7.7% | ||
7.2% | ||
4.8% | ||
4.8% | ||
3.8% | ||
3.8% | ||
2.9% | ||
2.4% | ||
1.9% | ||
1.4% | ||
1.4% | ||
1.0% | ||
1.0% | ||
1.0% | ||
1.0% | ||
1.0% | ||
0.5% | ||
0.5% | ||
0.5% | ||
0.5% | ||
0.5% | ||
0.5% | ||
0.5% | ||
0.5% |
OS Version:
Windows 7 | 87.5% | |
Windows 10 | 7.7% | |
Windows Vista | 2.4% | |
Windows 8.1 | 1.9% | |
Windows 8 | 0.5% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x000014e0 |
PE Sections:
Name | Size of data | MD5 |
.text | 484864 | 2eeca54de39b4c7d8249d3fe9a852901 |
.data | 1024 | 57a61d01561efe10e534f5ada0e3ec78 |
.rdata | 87552 | 60404245c8aa1538d596f2463a370885 |
/4 | 50176 | ca608928fbeb6dfdd69216990c509f0c |
.bss | 0 | 00000000000000000000000000000000 |
.idata | 6144 | 7f86ab027233a5050cd831cf90b039ab |
.CRT | 512 | 75e40c25548c8a673704b4346d98e2d3 |
.tls | 512 | 294a8e8e623d8509c3461db226cd3719 |
.rsrc | 17408 | e8c123079e7585ebce0c526e824e7e76 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for li1ew.exe