How to remove miner.exe
miner.exe
The module miner.exe has been detected as Risk.CoinMiner
File Details
MD5: | e140a4ba18a47222227b8d3587028ab2 |
Size: | 334 KB |
First Published: | 2017-12-12 15:10:17 (7 years ago) |
Latest Published: | 2018-08-20 22:14:52 (6 years ago) |
Status: | Risk.CoinMiner (on last analysis) | |
Analysis Date: | 2018-08-20 22:14:52 (6 years ago) |
Overview
Signed By: | Kibernetika LTD |
Status: | Valid |
Common Places:
%temp%\yuan |
%sysdrive%\windows.old\users\arshad nashad\appdata\local\temp\yuan |
Geography:
25.9% | ||
14.8% | ||
11.1% | ||
7.4% | ||
3.7% | ||
3.7% | ||
3.7% | ||
3.7% | ||
3.7% | ||
3.7% | ||
3.7% | ||
3.7% | ||
3.7% | ||
3.7% | ||
3.7% |
OS Version:
Windows 7 | 33.3% | |
Windows 10 | 33.3% | |
Windows Server 2012 R2 | 29.6% | |
Windows 8.1 | 3.7% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 64 |
Image Base: | 0x0000000000400000 |
Entry Address: | 0x00001500 |
PE Sections:
Name | Size of data | MD5 |
.text | 143360 | 103dfcb8a131f3a0455b126f6c89d715 |
.data | 147456 | 00f63a498e2ee814991da9dae68cd02c |
.rdata | 26624 | 363da8ce4d7bd552f028b81ce95196a8 |
.pdata | 4608 | 362a3b6eab5afd1e73fc92a28394f848 |
.xdata | 4608 | 773715e609c17ceeeccb8078eff55f7f |
.bss | 0 | 00000000000000000000000000000000 |
.idata | 6144 | 4d0e8e616b97f1223da2c803d6d94e06 |
.CRT | 512 | 779c844f773b8e73a3aac45a8ed9998c |
.tls | 512 | 360a2a0473f8018eab38d7171940088e |
.rsrc | 1536 | 1db22704d5381342b24271e95a4478b5 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for miner.exe