How to remove setup.exe
setup.exe
The module setup.exe has been detected as Trojan.CoinMiner
File Details
| Product Name: | setup.exe |
| Company Name: | |
| MD5: | 71e70498512ecc6f0e9d47b0512282d2 |
| Size: | 1 MB |
| First Published: | 2026-01-09 23:05:33 (2 weeks ago) |
| Latest Published: | 2026-01-09 23:05:33 (2 weeks ago) |
| Status: | Trojan.CoinMiner (on last analysis) | |
| Analysis Date: | 2026-01-09 23:05:33 (2 weeks ago) |
Common Places:
| %sysdrive%\файлы с компьютера\игровые файлы\[r.g. mechanics] train simulator 2014 - steam edition |
Geography:
| 100.0% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x0000aa98 |
PE Sections:
| Name | Size of data | MD5 |
| CODE | 41472 | b7ea439d9c6d5ec722056c9243fb3054 |
| DATA | 1024 | 9b2268ed5360951559d8041925d025fb |
| BSS | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .idata | 2560 | df5f31e62e05c787fd29eed7071bf556 |
| .tls | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .rdata | 512 | 14dfa4128117e7f94fe2f8d7dea374a0 |
| .reloc | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .rsrc | 11264 | a1bb2a96e3a443251706ecec3f6e439a |
More information:
Download GridinSoft
Anti-Malware - Removal tool for setup.exe