How to remove pagefile.exe
- File Details
- Overview
- Analysis
pagefile.exe
The module pagefile.exe has been detected as Risk.CoinMiner
File Details
MD5: |
e2a3f3dcd43d0c8ebca206192e418f71 |
Size: |
1 MB |
First Published: |
2021-01-05 14:30:57 (4 years ago) |
Latest Published: |
2021-01-11 16:44:48 (4 years ago) |
Status: |
Risk.CoinMiner (on last analysis) |
|
Analysis Date: |
2021-01-11 16:44:48 (4 years ago) |
Overview
%localappdata%\programs\kryptex-app\resources\app.asar.unpacked\node_modules\kryptex-backend\node_modules\pagefile\build |
%localappdata%\programs\kryptex-app\resources\app.asar.unpacked\node_modules\kryptex-backend\node_modules\pagefile\build |
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x00001393 |
Name |
Size of data |
MD5 |
.text |
830976 |
85129be58b0536a29ce384992f4c96a0 |
.rdata |
206336 |
ce09167d561099028ccd1a0f46247c7e |
.data |
10240 |
e84569b54e37d58852ba64dfbe7e9f25 |
.pdata |
37376 |
a4e6c1c1d49eb9cd566bcbb77f32cbe2 |
.idata |
4608 |
702703e64383bb614bd96acb1dd61af6 |
.00cfg |
512 |
fa7a4eb97ff63ee095b5c6028a6e88c8 |
.rsrc |
1536 |
6c883fd82059477e8f90ada19e428607 |
.reloc |
8192 |
3889e257b92e7d13ec687dbd6cd0193e |