How to remove updater.exe
- File Details
- Overview
- Analysis
updater.exe
The module updater.exe has been detected as Trojan.CoinMiner
File Details
Product Name: |
|
Company Name: |
|
MD5: |
4fc1a173a5c9ed852c7fb63a5f5db522 |
Size: |
658 KB |
First Published: |
2018-03-19 14:12:52 (6 years ago) |
Latest Published: |
2019-05-25 06:03:21 (5 years ago) |
Status: |
Trojan.CoinMiner (on last analysis) |
|
Analysis Date: |
2019-05-25 06:03:21 (5 years ago) |
Overview
%programfiles%\system native |
%windir%\temp |
%windir%\temp |
%windir%\temp |
|
50.0% |
|
|
14.3% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
Windows 8.1 |
50.0% |
|
Windows 10 |
35.7% |
|
Windows 8 |
7.1% |
|
Windows 7 |
7.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00042f0f |
Name |
Size of data |
MD5 |
.text |
396800 |
3e80c470d57960c49640cbbbb300b123 |
.rdata |
112640 |
d58214c74dfbbca6dffa37172c90ff02 |
.data |
4096 |
c00ca3bceb27f5e4dc4fde12984bcebd |
.rsrc |
129536 |
eec01f53b235afd4a77f75a0b28ef06b |
.reloc |
22528 |
9ab159c68bd3b6b89467c0feeff59171 |