How to remove procexp.exe
- File Details
- Overview
- Analysis
procexp.exe
The module procexp.exe has been detected as Trojan.CoinMiner
File Details
Product Name: |
|
Company Name: |
|
MD5: |
4781ee6ca82e053ec46834e7d803d972 |
Size: |
2 MB |
First Published: |
2018-01-11 23:10:00 (7 years ago) |
Latest Published: |
2018-01-11 23:10:00 (7 years ago) |
Status: |
Trojan.CoinMiner (on last analysis) |
|
Analysis Date: |
2018-01-11 23:10:00 (7 years ago) |
%sysdrive%\distr\qiq\process.explorer.16.21_monitor.3.4.rar\process explorer 16.21\processexplorer_ru\processexplorerportableapps_x86\app |
%sysdrive%\distr\qiq\process.explorer.16.21_monitor.3.4.rar\process explorer 16.21 |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0009ba18 |
Name |
Size of data |
MD5 |
.text |
763904 |
1e2849742a98c2ffc9c398b71748e23c |
.rdata |
185856 |
bd1bb4f0f00985c69a7036c10771f1c9 |
.data |
37376 |
8a237cea31de538e06d0686a237ac6b8 |
.rsrc |
1721344 |
f2dda914a3539d15f19f66822589c898 |
.reloc |
50688 |
fb54af943e76b308cd64169ed680c929 |
.data |
15360 |
bf1ea58ba0d4f11403c56c21f3aa931c |