How to remove window.exe
window.exe
The module window.exe has been detected as Trojan.CoinMiner

File Details
Product Name: | Microsoft Server |
Company Name: | www.microsoft.com |
MD5: | 403ac5415063143617f8e594747518d5 |
Size: | 1 MB |
First Published: | 2018-08-14 09:44:18 (6 years ago) |
Latest Published: | 2018-10-06 03:03:28 (6 years ago) |
Status: | Trojan.CoinMiner (on last analysis) | |
Analysis Date: | 2018-10-06 03:03:28 (6 years ago) |
Common Places:
%windir% |
Geography:
100.0% |
OS Version:
Windows 7 | 90.0% | |
Windows XP | 10.0% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x000014a0 |
PE Sections:
Name | Size of data | MD5 |
.text | 977408 | 3a26c40039d3a53081cb6bc00bd2105b |
.data | 2048 | 2ae62f7e025ad4f984d5728516c3da07 |
.rdata | 65536 | 7e8f6495e64d53ed1867f5775626132f |
.eh_fram | 124416 | b97187d07415b0f0d32d12bd6d69fdf7 |
.bss | 0 | 00000000000000000000000000000000 |
.idata | 9216 | 35fa62ccbca9206dcad216005c7a9235 |
.CRT | 512 | d6ad12f91d43da26ff3f274eb7037dd8 |
.tls | 512 | bf619eac0cdf3f68d496ea9344137e8b |
.rsrc | 2048 | 4415383832e238662d1959a72141663a |
More information:
Download GridinSoft
Anti-Malware - Removal tool for window.exe
