Malware

Generic.Application.CoinMiner.1.1381ABC8 removal

Malware Removal

The Generic.Application.CoinMiner.1.1381ABC8 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Application.CoinMiner.1.1381ABC8 virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • Unconventionial binary language: Portuguese (Brazil)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz

How to determine Generic.Application.CoinMiner.1.1381ABC8?


File Info:

crc32: 705E81E9
md5: 3b780bebffd1467debaf93b75aef92ec
name: upload_file
sha1: 6dd9d9b93cf461dcd36f4502abcf2de7706432b6
sha256: 3a152f840ed407c318b404131e8e7ade627b9ab5c09c051bc28353f3b9fe4d9d
sha512: d27f2682697933decfc2acfbd4c69624aabefd280d548ae1b466de96ee8e617843fee9d5534f5b8940bf7552389b5ab3b5cd6a7afa1f7d1019b1f64c1f6a7264
ssdeep: 24576:Bavgp4XjJq1Ore0BSgPiPfJe3LgpjrtA0HI6mDTpUnc0nOjY:sc4zqOrLAPRuLgpt/ItCt
type: PE32 executable (console) Intel 80386 (stripped to external PDB), for MS Windows, UPX compressed

Version Info:

LegalCopyright: (C)Qihu 360 Software Co., Ltd. All rights reserved.
InternalName: boottimetoast
FileVersion: 8,6,0,1000
ProductName: Boot Time Toast Notification
ProductVersion: 8,6,0,1000
FileDescription: Windows 8 Toast Notification
OriginalFilename: boottimetoast.exe
Translation: 0x0416 0x04b0

Generic.Application.CoinMiner.1.1381ABC8 also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Application.CoinMiner.1.1381ABC8
FireEyeGeneric.mg.3b780bebffd1467d
CAT-QuickHealTrojan.GenericPMF.S10700594
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusRiskware ( 0056346e1 )
BitDefenderGeneric.Application.CoinMiner.1.1381ABC8
K7GWRiskware ( 0056346e1 )
CyrenW32/CoinMiner.BY.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Coinminer.Generic-7151250-0
KasperskyTrojan.Win32.Miner.asxng
NANO-AntivirusRiskware.Win32.BtcMine.gutbsp
TencentMalware.Win32.Gencirc.10cdfcf3
Ad-AwareGeneric.Application.CoinMiner.1.1381ABC8
EmsisoftGeneric.Application.CoinMiner.1.1381ABC8 (B)
ComodoTrojWare.Win32.CoinMiner.HR@8pgq0i
F-SecureHeuristic.HEUR/AGEN.1133596
DrWebTool.BtcMine.2258
ZillyaTrojan.Miner.Win32.9427
InvinceaXMRig Miner (PUA)
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
SophosXMRig Miner (PUA)
IkarusTrojan.Win32.CoinMiner
JiangminTrojan.Miner.mpr
AviraHEUR/AGEN.1133596
MAXmalware (ai score=88)
Antiy-AVLRiskWare[RiskTool]/Win32.BitCoinMiner
MicrosoftTrojan:Win64/CoinMiner
ArcabitGeneric.Application.CoinMiner.1.1381ABC8
ZoneAlarmTrojan.Win32.Miner.asxng
GDataWin32.Application.Coinminer.BU
CynetMalicious (score: 90)
AhnLab-V3Trojan/Win32.Miner.R349954
Acronissuspicious
McAfeeGenericRXAA-AA!3B780BEBFFD1
VBA32BScope.Trojan.Miner
MalwarebytesRiskWare.BitCoinMiner
ESET-NOD32a variant of Win32/CoinMiner.ES potentially unwanted
RisingTrojan.Miner!8.EA1 (TFE:5:1SNaNiR6GKB)
YandexRiskware.Agent!
SentinelOneDFI – Suspicious PE
FortinetW32/CoinMiner.ES!tr
AVGWin32:Malware-gen
Cybereasonmalicious.bffd14
PandaTrj/Genetic.gen

How to remove Generic.Application.CoinMiner.1.1381ABC8?

Generic.Application.CoinMiner.1.1381ABC8 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment