How to remove xmrig.exe
xmrig.exe
The module xmrig.exe has been detected as Risk.CoinMiner
File Details
Product Name: | XMRig |
Company Name: | www.xmrig.com |
MD5: | 416cd6962669834505a571852a6c3663 |
Size: | 2 MB |
First Published: | 2020-06-07 10:09:57 (4 years ago) |
Latest Published: | 2020-09-19 19:52:50 (4 years ago) |
Status: | Risk.CoinMiner (on last analysis) | |
Analysis Date: | 2020-09-19 19:52:50 (4 years ago) |
Overview
Signed By: | Cudo Ventures Ltd |
Status: | Valid |
Common Places:
%commonappdata%\cudo miner\registry |
%commonappdata%\cudo miner\registry |
%commonappdata%\cudo miner\registry |
Geography:
66.7% | ||
33.3% |
OS Version:
Windows 10 | 100.0% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 64 |
Image Base: | 0x0000000140000000 |
Entry Address: | 0x00140674 |
PE Sections:
Name | Size of data | MD5 |
.text | 1610240 | 5ff410f7ec038d910fbeb1dd4f4bd001 |
.rdata | 347136 | 89a6d91c12acc497d463e8f0466b8f5d |
.data | 264704 | 5c46b9bc59ff87fb2fceac810ac69f9f |
.pdata | 56320 | b59a42fa27dc057af6a7d6d2242082bb |
_RANDOMX | 2048 | 4c9ad32e381e3b0d5fe17bbaafaae2bf |
_SHA3_25 | 2560 | c14f9aad5e95192cd7523ba6675549fd |
_TEXT_CN | 6656 | 6a7f77e47f77f65bef85036ae5a71106 |
_TEXT_CN | 4608 | 409bf3f918f2402291cb56c2e9354b47 |
.rsrc | 23040 | 5280d688717c0701ae99281c8f8a9e54 |
.reloc | 9728 | af69e6124ddb29fee15b6bb0d0b7a96c |
More information:
Download GridinSoft
Anti-Malware - Removal tool for xmrig.exe