How to remove witcher3.exe
- File Details
- Overview
- Analysis
witcher3.exe
The module witcher3.exe has been detected as Trojan.CoinMiner
File Details
Product Name: |
|
Company Name: |
|
MD5: |
5ea679b8b27b367518f2e1d5e618f50b |
Size: |
44 MB |
First Published: |
2018-02-24 02:04:38 (6 years ago) |
Latest Published: |
2018-08-02 17:11:34 (6 years ago) |
Status: |
Trojan.CoinMiner (on last analysis) |
|
Analysis Date: |
2018-08-02 17:11:34 (6 years ago) |
Overview
%sysdrive%\gry\the witcher 3 wild hunt\bin |
%sysdrive%\the witcher 3\the witcher 3 wild hunt\bin |
%sysdrive%\gog games\the witcher 3 wild hunt\bin |
%sysdrive%\games\the witcher 3 wild hunt\bin |
%programfiles%\gog galaxy\games\the witcher 3 wild hunt\bin |
|
60.0% |
|
|
13.3% |
|
|
6.7% |
|
|
6.7% |
|
|
6.7% |
|
|
6.7% |
|
Windows 10 |
46.7% |
|
Windows 7 |
46.7% |
|
Windows 8.1 |
6.7% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x00e7c3d8 |
Name |
Size of data |
MD5 |
.text |
30173184 |
93e79d4dc509eb650d07a2b766a84572 |
.rdata |
11611136 |
9efbbfc28b6ba61bba61e358b5e72fac |
.data |
1283584 |
c01ce1bf04ef3bc2471feb9bfc9a1953 |
.pdata |
1945088 |
1f4aaa5d66734df2d2a05d3596c2aa22 |
.tls |
1024 |
0f343b0931126a20f133d67c2b018a3b |
_RDATA |
6144 |
9cb4b6d18bdd5c2de7a72e9a3a44f64d |
.rsrc |
472576 |
f71114f375c19546fc247f983c4fc5b9 |
.reloc |
1035776 |
0515b460d4f785477b6c4b9885cddb70 |