How to remove mi.exe
mi.exe
The module mi.exe has been detected as Trojan.CoinMiner
File Details
MD5: | 538ccc336175cecd177c7dd4ea205710 |
Size: | 2 MB |
First Published: | 2019-04-26 19:09:33 (5 years ago) |
Latest Published: | 2020-12-22 04:06:53 (3 years ago) |
Status: | Trojan.CoinMiner (on last analysis) | |
Analysis Date: | 2020-12-22 04:06:53 (3 years ago) |
Common Places:
%temp% |
%temp% |
%temp% |
%temp% |
%temp% |
%temp% |
%temp% |
%temp% |
%temp% |
%temp% |
Geography:
9.1% | ||
7.3% | ||
6.5% | ||
4.4% | ||
4.1% | ||
4.0% | ||
3.7% | ||
3.2% | ||
3.2% | ||
2.6% | ||
2.4% | ||
2.3% | ||
2.3% | ||
2.3% | ||
1.8% | ||
1.8% | ||
1.8% | ||
1.5% | ||
1.5% | ||
1.5% | ||
1.5% | ||
1.5% | ||
1.2% | ||
1.2% | ||
1.2% | ||
1.2% | ||
1.2% | ||
1.2% | ||
1.1% | ||
1.1% | ||
0.9% | ||
0.9% | ||
0.9% | ||
0.9% | ||
0.9% | ||
0.8% | ||
0.8% | ||
0.8% | ||
0.8% | ||
0.6% | ||
0.6% | ||
0.6% | ||
0.6% | ||
0.6% | ||
0.6% | ||
0.5% | ||
0.5% | ||
0.5% | ||
0.5% | ||
0.5% | ||
0.5% | ||
0.5% | ||
0.5% | ||
0.5% | ||
0.5% | ||
0.3% | ||
0.3% | ||
0.3% | ||
0.3% | ||
0.3% | ||
0.3% | ||
0.3% | ||
0.2% | ||
0.2% | ||
0.2% | ||
0.2% | ||
0.2% | ||
0.2% | ||
0.2% | ||
0.2% | ||
0.2% | ||
0.2% | ||
0.2% | ||
0.2% | ||
0.2% | ||
0.2% |
OS Version:
Windows 10 | 58.8% | |
Windows 7 | 35.1% | |
Windows 8.1 | 4.6% | |
Windows Server 2012 R2 | 0.4% | |
Windows Server 2016 | 0.4% | |
Windows Vista | 0.4% | |
Windows 8 | 0.1% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x1dcb0000 |
Entry Address: | 0x000dfbc2 |
PE Sections:
Name | Size of data | MD5 |
.text | 1437184 | 52646cb78bb78973c5666a3aaa3e5163 |
.rdata | 172544 | eda06fec0adc1d21a39de4d97f346065 |
.data | 641536 | 8e963ec2b7e6b3bad4c6c5a60f5d7732 |
.reloc | 50688 | 41295e510b8d7e5d69cb634a73b64bcb |
More information:
Download GridinSoft
Anti-Malware - Removal tool for mi.exe