How to remove msinfo.exe
msinfo.exe
The module msinfo.exe has been detected as Trojan.CoinMiner
File Details
Product Name: | Microl office |
Company Name: | Microl office |
MD5: | 1e822122ee664767d15a3d8aaa3a0734 |
Size: | 4 MB |
First Published: | 2018-12-05 18:14:21 (6 years ago) |
Latest Published: | 2018-12-27 05:02:57 (5 years ago) |
Status: | Trojan.CoinMiner (on last analysis) | |
Analysis Date: | 2018-12-27 05:02:57 (5 years ago) |
Common Places:
%windir% |
%windir% |
%windir% |
%windir% |
Geography:
42.9% | ||
28.6% | ||
14.3% | ||
14.3% |
OS Version:
Windows Server 2008 R2 | 100.0% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x007d7a0f |
PE Sections:
Name | Size of data | MD5 |
.text | 0 | 00000000000000000000000000000000 |
.rdata | 0 | 00000000000000000000000000000000 |
.data | 0 | 00000000000000000000000000000000 |
.vmp0 | 0 | 00000000000000000000000000000000 |
.vmp1 | 4886016 | a7a4dce1c17d101c917cc475723c1bf8 |
.reloc | 1536 | 06ada81c460b01b467934191af4426ce |
.rsrc | 1536 | 02063aac2b2ac70b2eb4bea9ee286311 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for msinfo.exe