在线病毒检测器 | v.1.0.192.174 |
数据库版本: | 2024-10-11 20:00:28 |
CoinMiner是一种利用受害者的计算机资源(主要是CPU和RAM)进行加密货币挖掘(例如Monero或Zcash)的恶意软件。此恶意软件通过将开源挖掘工具集成到系统的启动例程中来建立持久性,而不需要用户的同意。高级的加密货币挖掘程序通常采用定时器配置或CPU使用限制等技术,以悄悄运行并避免检测。
File | NiceHashQuickMinerInstaller.exe |
已检查 | 2024-10-11 17:28:00 |
MD5 | fc825e0af9427c143e783e057e59b7ce |
SHA1 | 91b6c1375a476b9192182f8293d4f4b1d3c858f6 |
SHA256 | bb2a99f47c0b61fdb158b13ea673cdc2661a665c1a201ed7d0a9dca89db2d110 |
SHA512 | 79fcc928ae33bd6fba51545de6a9b73fd97fa7bc7457038023d3abdb3f860440fb3ecf00123bad1dd8d67d26299d899eec2f56747a4a49c7c049dbf664da235f |
File Size | 1859168 bytes |
Gridinsoft能够识别并消除Risk.Win64.CoinMiner.sd!ni,无需进一步的用户干预。
Translation | 0x0000 0x04b0 |
Comments | NiceHash QuickMiner |
CompanyName | NiceHash |
FileDescription | NiceHash QuickMiner |
FileVersion | 0.6.11.0 |
InternalName | NiceHashQuickMiner.exe |
LegalCopyright | Copyright © 2022 |
LegalTrademarks | |
OriginalFilename | NiceHashQuickMiner.exe |
ProductName | NiceHash QuickMiner |
ProductVersion | 0.6.11.0 |
Assembly Version | 0.6.11.0 |
80242aa29740ee2191fda98ac18af12d bbc16c4d575b1b2b0e456be0da298f8f e8c4d0e4ac98d0e0 |
|
Image Base: | 0x140000000 |
Entry Point: | 0x140000000 |
Compilation: | 2100-06-25 15:26:40 |
Checksum: | 0x001c6a8b (Actual: 0x001c6a8b) |
OS Version: | 4.0 |
PDB Path: | Z:\Development\signing\excavator\watchdog2\obj\Release\NiceHashQuickMiner.pdb |
PEiD: | PE32+ executable (GUI) x86-64 Mono/.Net assembly, for MS Windows |
Sign: | OK |
Sections: | 2 |
Imports: | 0 |
Exports: | 0 |
Resources: | 7 |
名称 | 虚拟地址 | 虚拟大小 | 原始大小 | MD5 | 熵 |
---|---|---|---|---|---|
.text | 0x00002000 | 0x00179442 | 0x00179600 | 53af8b901a5f56858d7de7097d7a7c95 | 4.81 |
.rsrc | 0x0017c000 | 0x00046c9c | 0x00046e00 | 5faf30ba26ab1aeaefd5627e1fef9204 | 3.60 |