How to remove nvidia_driver.exe
- File Details
- Overview
- Analysis
nvidia_driver.exe
The module nvidia_driver.exe has been detected as Trojan.CoinMiner
File Details
Product Name: |
|
Company Name: |
|
MD5: |
3e270cfdcc4ba2c647c1f2f098877042 |
Size: |
5 MB |
First Published: |
2017-11-25 17:09:05 (7 years ago) |
Latest Published: |
2018-09-10 17:15:03 (6 years ago) |
Status: |
Trojan.CoinMiner (on last analysis) |
|
Analysis Date: |
2018-09-10 17:15:03 (6 years ago) |
%appdata%\systemcare\system1.exe |
%appdata%\nvidia |
%appdata% |
%sysdrive%\gordons-pc\backup set 2018-08-26 190005\backup files 2018-08-26 190005\backup files 2.zip\c\users\gordons\appdata\roaming |
Windows 7 |
83.3% |
|
Windows 10 |
16.7% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x0005ccec |
Name |
Size of data |
MD5 |
.text |
532480 |
9b212fe7059810319be871154196f3b4 |
.rdata |
193024 |
e888e823076819cfc1f40e3902c01325 |
.data |
31232 |
dcd5f48239bfb9d6d18273218f9093f2 |
.pdata |
27648 |
c5556220048205c84ec4531ac99c6b8d |
.nv_fatb |
4881408 |
c9b1c19aa02bf771e82cd1c58bc2bd84 |
.nvFatBi |
512 |
0850540c8118a4970aefcc1078f75e6f |
.gfids |
1024 |
88a7019f405d59fa40ec816c1f8e5c16 |
.tls |
512 |
1f354d76203061bfdd5a53dae48d5435 |
.rsrc |
18432 |
6a809cf399c52a7ab1d529689ef0939f |
.reloc |
5632 |
37b6f9debe62cc290b876f2aca30e7d0 |