We checked up the file DXNVIDIADRV.COM and found it hazardous.
The file DXNVIDIADRV.COM must be deleted from the system immediately.
Kill the process DXNVIDIADRV.COM and remove DXNVIDIADRV.COM from the Windows startup.
Malware Analysis of DXNVIDIADRV.COM
Full path on a computer: C:\NVIDIA\w32\dxnVidiaDrv.com
Detected by UnHackMe:
DXNVIDIADRV.COM
Default location: C:\NVIDIA\w32\dxnVidiaDrv.com
Removal Results: Success
Number of reboot: 1
DXNVIDIADRV.COM is known as:
Trojan.BitCoinMiner, Bitcoinminer, Win32:Miner-B [PUP], not-a-virus:RiskTool.BitCoinMiner.jdy, Quarkcoin Miner, Win64.Trojan.Agent.8CJXFN, Crypt, Trojan.BitCoinMiner.aZ
DXNVIDIADRV.COM hash:
- MD5: cbb082a4ab17e02cb2cd44357a1e5661
How to quickly detect DXNVIDIADRV.COM presence?
Registry:
- HKCU\Software\Microsoft\Windows\CurrentVersion\Run\NVIDIA Driver: “c:\NVIDIA\nvvsvc.exe”
Folders:
- C:\NVIDIA
- C:\NVIDIA\w32
- C:\NVIDIA\w64
Files:
- %Local Appdata%\Google\Chrome\User Data\Default\Login Data.tmp
- %WinDir%\configi.cnfg
- %WinDir%\confo.confg
- C:\NVIDIA\code.exe
- C:\NVIDIA\nvvsvc.exe
- C:\NVIDIA\sqlite3.dll
- C:\NVIDIA\w32\dx9.dll
- C:\NVIDIA\w32\dxnVidiaDrv.com
- C:\NVIDIA\w32\nvidia.dll
- C:\NVIDIA\w32\pwDrv.dll
- C:\NVIDIA\w64\dx9.dll
- C:\NVIDIA\w64\dxnVidiaDrv.com
- C:\NVIDIA\w64\nvidia.dll
- C:\NVIDIA\w64\pwDrv.dll