How to remove service_box.exe

service_box.exe

The module service_box.exe has been detected as Trojan.CoinMiner

service_box.exe
Product Name:

System Native Service

Company Name:

www.somedomainthatnotexists.com

MD5: df8d2304bff52a1fd501c96aa32d671a
Size: 1000 KB
First Published: 2018-01-04 01:03:44 (7 years ago)
Latest Published: 2018-09-03 09:16:20 (6 years ago)
Status: Trojan.CoinMiner (on last analysis)
Analysis Date: 2018-09-03 09:16:20 (6 years ago)
Signed By: Jetstar Media LTD
Status: Valid
%programfiles%\system native
16.7%
16.7%
11.1%
11.1%
11.1%
5.6%
5.6%
5.6%
5.6%
5.6%
5.6%
Windows 10 50.0%
Windows 7 44.4%
Windows Vista 5.6%
Subsystem: Windows CUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00001500

PE Sections:

Name Size of data MD5
.text 722944 1fc7afccfe7a67b688137550711d46d6
.data 512 f32ecc31043f786678f1067ff524a1d7
.rdata 62976 1fad22add5c09e3e1a387b0b30ca6a5a
.eh_fram 112128 dbdcaa2a0bb93b9faccc1beec7cdb819
.bss 0 00000000000000000000000000000000
.idata 9728 da3d5232668162b0062fd21edd1e0832
.CRT 512 b5cadf2307f0db18cfcadc4b67488bcd
.tls 512 65e87a41a853e37787dad7dd6ca72dea
.rsrc 106544 616adff212e479676009d2db75cdb5a7

More information:

Download GridinSoft Anti-Malware - Removal tool for service_box.exe