How to remove rcwurucr.exe

rcwurucr.exe

The module rcwurucr.exe has been detected as Trojan.CoinMiner

rcwurucr.exe
Product Name:

Ghisler Software GmbH Totalcmd-X64

Company Name:

Ghisler Software GmbH

MD5: 355af93bc6b1d00f2ebaac65553889ac
Size: 254 KB
First Published: 2018-06-02 13:03:47 (6 years ago)
Latest Published: 2018-06-02 13:03:47 (6 years ago)
Status: Trojan.CoinMiner (on last analysis)
Analysis Date: 2018-06-02 13:03:47 (6 years ago)
%appdata%\microsoft
100.0%
Windows 8.1 100.0%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x000018e0

PE Sections:

Name Size of data MD5
.text 19456 1ff09c4dd9db20736561a874f5e50071
.rdata 8704 e48015cc5f742378e1e3fa3fa366e907
.data 223232 c8dbbb5a51016d93b4c6a4333394358f
.rsrc 7680 988159a988a0dc6f8b57f53be0a842c6

More information:

Download GridinSoft Anti-Malware - Removal tool for rcwurucr.exe