How to remove updater.exe
- File Details
- Overview
- Analysis
updater.exe
The module updater.exe has been detected as Trojan.CoinMiner
File Details
Product Name: |
|
Company Name: |
|
MD5: |
2ef05ce569745b20d4a0bf27709ed6d3 |
Size: |
623 KB |
First Published: |
2017-09-15 04:14:50 (7 years ago) |
Latest Published: |
2018-06-16 07:07:15 (6 years ago) |
Status: |
Trojan.CoinMiner (on last analysis) |
|
Analysis Date: |
2018-06-16 07:07:15 (6 years ago) |
Overview
%programfiles%\devnull\netadapterupdate |
%windir%\temp |
%programfiles%\devnull |
%appdata%\zhp |
%sysdrive%\adwcleaner\quarantine\idcdjoyapn |
|
28.6% |
|
|
23.8% |
|
|
19.0% |
|
|
9.5% |
|
|
9.5% |
|
|
9.5% |
|
Windows 10 |
81.0% |
|
Windows 7 |
19.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0003be21 |
Name |
Size of data |
MD5 |
.text |
365568 |
902eb37c9449d481363892b0bd1f63c6 |
.rdata |
110592 |
ea8a281f5e42d982e66313c1629fedec |
.data |
4096 |
07ecf22404c25aaa1ae1150fed519287 |
.tls |
512 |
1f354d76203061bfdd5a53dae48d5435 |
.rsrc |
128000 |
728226eccae7b77dd727fa98dd16853f |
.reloc |
21504 |
8fb4225324e921e92fd3a0c3e7456c4d |