How to remove ScreenTouchSetup.exe
- File Details
- Overview
- Analysis
ScreenTouchSetup.exe
The module ScreenTouchSetup.exe has been detected as Trojan.CoinMiner
File Details
Product Name: |
|
Company Name: |
|
MD5: |
d51503b95f62bca95d7153366c2eeff7 |
Size: |
643 KB |
First Published: |
2017-11-25 16:07:20 (7 years ago) |
Latest Published: |
2018-05-13 15:05:03 (7 years ago) |
Status: |
Trojan.CoinMiner (on last analysis) |
|
Analysis Date: |
2018-05-13 15:05:03 (7 years ago) |
%commonappdata%\serviceprofiles |
%sysdrive%\temp |
%commonappdata% |
%temp% |
esif.exe |
ScreenTouchSetup.exe |
Indonesia |
20.8% |
|
Vietnam |
13.2% |
|
Turkey |
11.3% |
|
Thailand |
11.3% |
|
Georgia |
9.4% |
|
Russia |
9.4% |
|
Serbia |
3.8% |
|
Estonia |
1.9% |
|
South Korea |
1.9% |
|
Ukraine |
1.9% |
|
Romania |
1.9% |
|
Belgium |
1.9% |
|
Canada |
1.9% |
|
Czech Republic |
1.9% |
|
Japan |
1.9% |
|
Philippines |
1.9% |
|
Kazakhstan |
1.9% |
|
Morocco |
1.9% |
|
Windows 7 |
56.6% |
|
Windows 10 |
34.0% |
|
Windows 8.1 |
9.4% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x0002bb10 |
Name |
Size of data |
MD5 |
.text |
451072 |
f46ea28fe9b4478e14a3ec20bf413b6c |
.rdata |
147456 |
abfa04767caa8999f8080d0d1fea911e |
.data |
31232 |
bec18a0d5c38962d984492397dbe06d3 |
.pdata |
21504 |
967edd3e0df3322691141cda48e94d14 |
.rsrc |
1536 |
a9ba25f52a8b3db0ec8cfbf2db77b604 |
.reloc |
4608 |
0147477501bfc4d0df615f617992b3b1 |