How to remove vds.exe
vds.exe
The module vds.exe has been detected as Risk.CoinMiner
File Details
MD5: | 446a6f6d28d41343f69937f24a8cb4a2 |
Size: | 2 MB |
First Published: | 2017-05-27 03:08:01 (7 years ago) |
Latest Published: | 2019-09-07 13:24:41 (5 years ago) |
Status: | Risk.CoinMiner (on last analysis) | |
Analysis Date: | 2019-09-07 13:24:41 (5 years ago) |
Overview
Signed By: | H-BIT d.o.o. |
Status: | Valid |
Common Places:
%temp%\{dbvyd-j1l4c-dsxvy-fevwd-yu1j6-10dha} |
%temp%\{gdg4a-8c2s4-w4xu7-clrlh-hko5j-e5ds4} |
%temp%\{o9gp3-m1pvs-37ct7-pe5d5-6zm81-56318} |
%temp%\{8uuaz-qt0ef-428ma-kkn42-bsfde-hvf5x} |
%temp%\{k8vb3-kmfwx-1g2x6-8hyye-zp523-3ylkc} |
%temp%\{6tklx-fkqz8-vohtg-h0ut9-ln61o-9rpqe} |
%temp%\{l9h7k-8k75u-aw38y-4yfrb-qfmxq-lkf79} |
%temp%\{643kf-71ex3-ccvrq-wuqx5-s9252-e76je} |
%temp%\{s3xjh-mp6j2-7an09-2yqw7-oaf0s-vx9ea} |
%temp%\{k5t39-hahxv-up6yj-mxoes-smjwu-xw0f8} |
File Names:
eqm.exe |
vds.exe |
system.exe |
System.exe |
login.exe |
Geography:
75.8% | ||
9.8% | ||
3.9% | ||
3.1% | ||
1.6% | ||
1.2% | ||
0.8% | ||
0.8% | ||
0.4% | ||
0.4% | ||
0.4% | ||
0.4% | ||
0.4% | ||
0.4% | ||
0.4% | ||
0.4% |
OS Version:
Windows 10 | 69.1% | |
Windows 7 | 27.4% | |
Windows 8.1 | 3.1% | |
Windows Server 2016 | 0.4% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 64 |
Image Base: | 0x0000000140000000 |
Entry Address: | 0x00073f88 |
PE Sections:
Name | Size of data | MD5 |
.text | 513536 | 8e4bf0ff8dbdc746c4600602ba2f101d |
.rdata | 215040 | 1fc3073e3de3fe9a2ac9b7a1077055ed |
.data | 35328 | 1aabfc4d8aac9cb924016b9487997a37 |
.pdata | 33792 | d9bb8ab71b2f2b1b6ef57960590b682e |
.nv_fatb | 591872 | d1ab0dd48f27cc51d09f09cc440fecc7 |
.nvFatBi | 512 | f2f3c633f9cbbe0ecc34170dd0bff838 |
.tls | 512 | bf619eac0cdf3f68d496ea9344137e8b |
.rsrc | 512 | 369efd4b5dc1f2dd70b82041bd89aaa3 |
.reloc | 1388544 | b07589bcdec9a23df750a82a589b02e8 |
.v-lizer | 33792 | 366b50837f4bea1b5c7745fe43d14a5c |
More information:
Download GridinSoft
Anti-Malware - Removal tool for vds.exe