How to remove nicehashminerlegacy.exe
- File Details
- Overview
- Analysis
nicehashminerlegacy.exe
The module nicehashminerlegacy.exe has been detected as Risk.CoinMiner
File Details
Product Name: |
|
Company Name: |
|
MD5: |
5957c0c713e9de33b9329fd60c1ab8e8 |
Size: |
1 MB |
First Published: |
2018-03-12 22:00:47 (6 years ago) |
Latest Published: |
2019-12-08 17:46:47 (4 years ago) |
Status: |
Risk.CoinMiner (on last analysis) |
|
Analysis Date: |
2019-12-08 17:46:47 (4 years ago) |
%desktop% |
%profile%\downloads |
%sysdrive%\$recycle.bin\s-1-5-21-3579654351-221003076-1310833382-1001 |
%temp% |
%sysdrive%\挖礦 |
%localappdata%\packages\microsoft.microsoftedge_8wekyb3d8bbwe\ac\#!001\microsoftedge\cache\3n8oatxe |
%sysdrive% |
%desktop%\новая папка (3) |
%sysdrive%\майн |
%sysdrive%\новые криптопроги |
NiceHashMinerLegacy.exe |
nicehashminerlegacy.exe |
NiceHashMinerLegacy (2018_03_22 14_10_05 UTC).exe |
|
37.8% |
|
|
15.9% |
|
|
13.4% |
|
|
4.9% |
|
|
4.9% |
|
|
3.7% |
|
|
3.7% |
|
|
3.7% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
Windows 10 |
85.4% |
|
Windows 7 |
13.4% |
|
Windows 8.1 |
1.2% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000d6fc6 |
MVID: |
c9aa2ce9-a2e8-42ea-a114-ba80257daeef |
Typelib ID: |
14c0b1c1-14f7-4302-8253-a7c8c46c02f4 |
Name |
Size of data |
MD5 |
.text |
872960 |
295b61a55b6adfe20a583b99fae5cf9a |
.rsrc |
287744 |
d9bf21cecb1dcc5ad68e4ae6d03ed757 |
.reloc |
512 |
2b29d554eb5180ecae96ca18a73971e4 |