File Name | eGlobeG2-AddDigiCert_Signed_V1.1_2033.exe |
File Type |
PE32 executable (GUI) Intel 80386, for MS Windows
|
Scanner Version | 1.0.209.174 |
Database Version | 2025-02-19 15:00:29 UTC |
Malware family: CoinMiner
Hash Type | Value | Action |
---|---|---|
MD5 |
128e019c0fc36822b0adedce1ee027e2
|
|
SHA1 |
94e82dd93a2eaf207c5070efeef49895ea3a3374
|
|
SHA256 |
0e767cefd59f8ef1f4fc8240a3e4589fe095cb749db43189b0f135e269141f47
|
|
SHA512 |
0022196ba39556737aa159b8033adc575e63eb8a37732a4d71d89ee769bc4145d70eb97aad8930053adae4b6cd411e68da15e6094cca824cb5b5c4ddf4a60bdf
|
|
ImpHash |
c4b8b0aba9f9c876ca624bdbda64d516
|
Icon |
Hash: 65eb1ccd75aa8f30d1cdeb1e3664c762
Fuzzy: 492ef11ed8c743ab66aa3aa202045b43 dHash: f0b04c4cb0f0e871 |
Image Base | 0x00400000 |
Entry Point | 0x00408356 |
Compilation Time | 2017-01-11 23:58:49 |
Checksum | 0x000268d7 (Actual: 0x00022dd7) |
OS Version | 4.0 |
PEiD Signatures |
PE32 executable (GUI) Intel 80386, for MS Windows
|
Digital Signature | OK |
Imports |
4 libraries
KERNEL32, USER32, SHELL32, WINMM |
Exports | 0 functions |
Resources | 4 Resources |
Sections | 4 Sections |
FileVersion | 1.0.0.1 |
ProductVersion | 1.0.0.1 |
FileDescription | Adding certificate |
CompanyName | ChartWorld |
LegalCopyright | ChartWorld |
ProductName | DigiCertAdd |
Translation | 0x0000 0x04b0 |
Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
---|---|---|---|---|---|---|
.text |
0x00001000 |
51,650 bytes | 53,248 bytes | 6.29 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
A5A434D2CAC4979A03FBAEE54BA91101 |
.rdata |
0x0000e000 |
2,624 bytes | 4,096 bytes | 3.93 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
F6853B9D698E10B9BC58F7355E52409D |
.data |
0x0000f000 |
11,537,784 bytes | 4,096 bytes | 3.40 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
1C66FD83795891C11E473EEFE2166FBA |
.rsrc |
0x00b10000 |
5,948 bytes | 8,192 bytes | 5.02 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
BAD6B32AD94798FE360678F308F7FFB3 |
Resource Type | Count | Total Size | Percentage |
---|---|---|---|
RT_ICON | 1 | 4,264 bytes | |
RT_GROUP_ICON | 1 | 20 bytes | |
RT_VERSION | 1 | 572 bytes | |
RT_MANIFEST | 1 | 786 bytes |
This file is not digitally signed.
⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources
OK
Gridinsoft has the capability to identify and eliminate Trojan.Win32.CoinMiner.dd!s1 without requiring further user intervention.
Download Anti-MalwareFollow these steps to completely remove the threat from your system