How to remove sclomer.exe
- File Details
- Overview
- Analysis
sclomer.exe
The module sclomer.exe has been detected as Trojan.CoinMiner
File Details
| Product Name: |
|
| MD5: |
3400f2d7cc9ad0dfa3db6a3e2c422ba4 |
| Size: |
4 MB |
| First Published: |
2017-06-10 12:03:47 (8 years ago) |
| Latest Published: |
2021-01-07 05:26:31 (5 years ago) |
| Status: |
Trojan.CoinMiner (on last analysis) |
|
| Analysis Date: |
2021-01-07 05:26:31 (5 years ago) |
| %profile%\downloads\cpuminer-multi-rel1.3 |
| %profile%\downloads\cpuminer-multi-rel1.3\x86 |
| %profile%\downloads\cpuminer-multi-rel1.3.zip\x86 |
| %profile%\downloads\cpuminer-multi-rel1.3(1).zip\x86 |
| %profile%\downloads\compressed\cpuminer-multi-rel1.3 - copy\x86 |
| %profile%\downloads\compressed\cpuminer-multi-rel1.3\x86 |
| %sysdrive%\new folder\claymore cryptonote cpu miner v3.5 beta - pool\suprnava\cpuminer-multi-rel1.3\x86 |
| %sysdrive%\new folder\claymore cryptonote cpu miner v3.5 beta - pool\mining dutch\cpuminer-multi-rel1.3\x86 |
| %sysdrive%\new folder\claymore cryptonote cpu miner v3.5 beta - pool\miningpoolhub\cpuminer-multi-rel1.3\x86 |
| %profile%\downloads\compressed\cpuminer-multi-rel1.3.zip\x86 |
| cpuminer-x86.exe |
| sclomer.exe |
| m32.exe |
| service.exe |
| cpuminer-multi.exe |
| svchost.exe |
| System Idle Process.exe |
| Windows.exe |
| /service.exe |
| FantasyAFK32.exe |
|
50.0% |
|
|
9.2% |
|
|
6.6% |
|
|
6.6% |
|
|
6.6% |
|
|
3.9% |
|
|
2.6% |
|
|
2.6% |
|
|
2.6% |
|
|
2.6% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
| Windows 10 |
65.4% |
|
| Windows 7 |
25.6% |
|
| Windows XP |
3.8% |
|
| Windows Server 2012 |
2.6% |
|
| Windows Server 2003 |
1.3% |
|
| Windows 8.1 |
1.3% |
|
Analysis
| Subsystem: |
Windows CUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x0016d5f9 |
| Name |
Size of data |
MD5 |
| .text |
1495040 |
fd06b7fe3d69acf5cf92434613e7410d |
| .rdata |
449536 |
57abe2fe62f0e3e5b75e70a89a38ebea |
| .data |
329216 |
e2390884d4d222f7b8c3237112466638 |
| .tls |
2099712 |
2b9839519c8d8010a9f6682212ec481d |
| .ctors |
512 |
061cf300866aed300bd23cf3d5b18207 |
| .dtors |
512 |
ac64161dee4bdfc6bfa4d2882d664011 |
| .rsrc |
16384 |
c0b1af9b03166bcecacc8ffd72b21c79 |
| .reloc |
67072 |
5c6f8419ba9b08682c0a5001d19c0f6c |