How to remove update64.exe
- File Details
- Overview
- Analysis
update64.exe
The module update64.exe has been detected as Trojan.CoinMiner
File Details
Product Name: |
|
Company Name: |
|
MD5: |
d5f7aff245df17a85f642b23d8d42879 |
Size: |
580 KB |
First Published: |
2018-06-28 06:05:34 (6 years ago) |
Latest Published: |
2018-07-20 02:07:56 (6 years ago) |
Status: |
Trojan.CoinMiner (on last analysis) |
|
Analysis Date: |
2018-07-20 02:07:56 (6 years ago) |
%programfiles%\systema natives |
|
33.3% |
|
|
22.2% |
|
|
22.2% |
|
|
11.1% |
|
|
11.1% |
|
Windows 10 |
55.6% |
|
Windows 8.1 |
33.3% |
|
Windows 7 |
11.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000432a0 |
Name |
Size of data |
MD5 |
.text |
397824 |
f76e87243b3db3e1776d35b2599606d7 |
.rdata |
112640 |
111747fb8edcbe443f1607266963af06 |
.data |
4096 |
c67636c64a180ea9f135762d5f288d3c |
.rsrc |
55808 |
3da787878576a03ab7eb670dc90515fc |
.reloc |
22528 |
460da11b7367edc5aa34842ec4905eff |