How to remove msinfo.exe
msinfo.exe
The module msinfo.exe has been detected as Trojan.CoinMiner
File Details
| Product Name: | Microl office |
| Company Name: | Microl office |
| MD5: | 9f22036081b1f8672ebff213edc63ff9 |
| Size: | 6 MB |
| First Published: | 2022-11-14 23:04:47 (3 years ago) |
| Latest Published: | 2022-12-11 23:18:25 (3 years ago) |
| Status: | Trojan.CoinMiner (on last analysis) | |
| Analysis Date: | 2022-12-11 23:18:25 (3 years ago) |
Common Places:
| %windir% |
| %windir% |
| %windir% |
Geography:
| 100.0% |
OS Version:
| Windows Server 2008 R2 | 50.0% | |
| Windows Server 2016 | 50.0% |
Analysis
| Subsystem: | Windows CUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x00d249d4 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .rdata | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .data | 0 | d41d8cd98f00b204e9800998ecf8427e |
| hgg0 | 0 | d41d8cd98f00b204e9800998ecf8427e |
| hgg1 | 7273472 | e06b7399ff9061a5447da059e373f209 |
| .reloc | 1536 | a6a1df82d99343933761ad66eb10364a |
| .rsrc | 1024 | 3ffccd4219dd649e032345b608130a5f |
More information:
Download GridinSoft
Anti-Malware - Removal tool for msinfo.exe