How to remove nvidia.exe
nvidia.exe
The module nvidia.exe has been detected as Trojan.CoinMiner
File Details
| Product Name: | FireEye Client |
| Company Name: | FireEye Inc |
| MD5: | efc23c110b4f3e137461cb1295f7e014 |
| Size: | 9 MB |
| First Published: | 2021-03-19 21:03:13 (4 years ago) |
| Latest Published: | 2021-03-19 21:03:13 (4 years ago) |
| Status: | Trojan.CoinMiner (on last analysis) | |
| Analysis Date: | 2021-03-19 21:03:13 (4 years ago) |
Overview
| Signed By: | Lacoste Men's Shop |
| Status: | Valid |
Common Places:
| %appdata%\windows |
Geography:
| 100.0% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows CUI |
| PE Type: | pe |
| OS Bitness: | 64 |
| Image Base: | 0x0000000140000000 |
| Entry Address: | 0x018ab160 |
PE Sections:
| Name | Size of data | MD5 |
| 861184 | 9db93c1151b5d94f433f38556a24b79a | |
| 272896 | a6c8c09ed492ff18d1a2b77bd3f70b90 | |
| 9728 | 47cef5eba92ebe4118b1ed96ba23153d | |
| 37888 | bbe6284cfaf20bd69355f30e811e613c | |
| 2335232 | 117036369484ef30437079a743f406b1 | |
| 512 | f880057b12f21708f209c2a44460ef16 | |
| 2560 | 24b136e189e5b700e1223738b6adb137 | |
| 2560 | 6056f98eb1c4dec42e83086e559a0a39 | |
| .rsrc | 4906496 | 47554836fb8e3b0a4fe66834f82d2b4b |
| 6656 | 7d785fa12831bc6a732f2f8eeeae7955 | |
| .edata | 512 | b9c79611f9299940e07da113414d15f4 |
| .idata | 1024 | de7bf59e7e4e8cedd1a375a40317d7ff |
| .tls | 512 | ea828f852a9e45f73866ab841e245d71 |
| .themida | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .boot | 1630208 | fb0c21ada903733a970873c26d2b9d7a |
| .reloc | 16 | ff78e56f847857394449487875b260bf |
More information:
Download GridinSoft
Anti-Malware - Removal tool for nvidia.exe