How to remove witcher3.exe
- File Details
- Overview
- Analysis
witcher3.exe
The module witcher3.exe has been detected as Trojan.CoinMiner
File Details
Product Name: |
|
Company Name: |
|
MD5: |
873efffc1a56b8db628e90c8a22be6d8 |
Size: |
44 MB |
First Published: |
2018-02-22 16:01:04 (6 years ago) |
Latest Published: |
2018-03-18 05:10:26 (6 years ago) |
Status: |
Trojan.CoinMiner (on last analysis) |
|
Analysis Date: |
2018-03-18 05:10:26 (6 years ago) |
Overview
%sysdrive%\jeux installés\the witcher 3 wild hunt\bin |
%sysdrive%\g\the witcher 3 wild hunt\bin |
%sysdrive%\games\the witcher 3 wild hunt\bin |
%sysdrive%\the witcher 3 wild hunt\bin |
%programfiles%\the witcher 3 wild hunt complete\bin |
%programfiles%\steam\steamapps\common\the witcher 3\bin |
%sysdrive%\pc_game2016\巫師3-1\the witcher 3\the witcher 3\bin |
%sysdrive%\witch hunter\the witcher 3 wild hunt\bin |
|
25.0% |
|
|
25.0% |
|
|
12.5% |
|
|
12.5% |
|
|
12.5% |
|
|
12.5% |
|
Windows 10 |
50.0% |
|
Windows 7 |
37.5% |
|
Windows 8.1 |
12.5% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x00e78408 |
Name |
Size of data |
MD5 |
.text |
30156800 |
e1adf47eefd123b0b8951fcfafa00f77 |
.rdata |
11602432 |
be1960d81c1c0a93f4e26a3a1ed3cac5 |
.data |
1283584 |
bf8568425b3767b62ed793c36cf0d535 |
.pdata |
1944064 |
cbf97d8ed693b04531d988f0ad8b6d79 |
.tls |
1024 |
0f343b0931126a20f133d67c2b018a3b |
_RDATA |
6144 |
9cb4b6d18bdd5c2de7a72e9a3a44f64d |
.rsrc |
472576 |
ce2c3fff49def223b32e4a5f9bbe80f3 |
.reloc |
1035264 |
639eee4745d6079a9a1d2b71c32f0160 |