How to remove qm2014chs.exe
- File Details
- Overview
- Analysis
qm2014chs.exe
The module qm2014chs.exe has been detected as Trojan.CoinMiner
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
6c09010377f246069c564a6829667e4e |
| Size: |
23 MB |
| First Published: |
2024-08-16 23:00:58 (a year ago) |
| Latest Published: |
2024-12-02 23:01:11 (11 months ago) |
| Status: |
Trojan.CoinMiner (on last analysis) |
|
| Analysis Date: |
2024-12-02 23:01:11 (11 months ago) |
Overview
| %profile% |
| %sysdrive%\user |
| %sysdrive%\user |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x00016478 |
| Name |
Size of data |
MD5 |
| .text |
82944 |
345db2b6911addc85b53f32245f969a0 |
| .itext |
3072 |
2e74d968caedeb2d71b9505530d43907 |
| .data |
3584 |
d5b22eff9e08edaa95f493c1a71158c0 |
| .bss |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .idata |
4096 |
b47eaca4c149ee829de76a342b5560d5 |
| .tls |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .rdata |
512 |
3746f5876803f8f30db5bb2deb8772ae |
| .rsrc |
159744 |
3cf19e01cbc7d4b9100181a2bbff7372 |