Malware

Application.BitCoinMiner.TX removal tips

Malware Removal

The Application.BitCoinMiner.TX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.BitCoinMiner.TX virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Application.BitCoinMiner.TX?


File Info:

name: A0314777E1EFDD81F37A.mlw
path: /opt/CAPEv2/storage/binaries/bd47b903def5bba47bbdb77d90ad384758da7af08b0b229c49c127f051e57bdf
crc32: F0C635D9
md5: a0314777e1efdd81f37a0f7c905716bb
sha1: 82408b62a06907df94d12b41a58b49160c72b483
sha256: bd47b903def5bba47bbdb77d90ad384758da7af08b0b229c49c127f051e57bdf
sha512: 66c30d44a2e2c3769687e19173b264c5f9cb28c5852d726c470c838b6546bad07c5fa010c172fdaa836dd6166195a562d4b1259912d6ab9f770326e42984f036
ssdeep: 98304:JRqymq8QFCqdzWmBzLlRUvEYw+Lc4IhtNxONcfBO4P4hcLRXBdHJfRl8Itkvbsr6:JwymqB4IhNL0MUc4DURVDpSIQyrDsd7
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A5563330BF9084F1E47B58355681AB56D83DBC165E3ADBAF6BC40A7C2D302D0DA24B67
sha3_384: 3f33b714df91979d6ca6b17e1746376fa3938769638e3828f081ab83c706bfa213f4e791d3b9bf15def4fb806b4dd323
ep_bytes: e899040000e980feffff3b0db8914300
timestamp: 2016-08-14 19:15:49

Version Info:

0: [No Data]

Application.BitCoinMiner.TX also known as:

BkavW32.Common.E4D9E602
LionicRiskware.Win32.Miner.1!c
Elasticmalicious (high confidence)
DrWebTool.BtcMine.1063
MicroWorld-eScanApplication.BitCoinMiner.TX
FireEyeApplication.BitCoinMiner.TX
SkyhighBehavesLike.Win32.Dropper.tc
ALYacApplication.BitCoinMiner.TX
Cylanceunsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusCryptoMiner ( 005632951 )
AlibabaRiskWare:Win64/Miners.f3b35736
K7GWCryptoMiner ( 005632951 )
Cybereasonmalicious.7e1efd
VirITTrojan.Win32.CoinMiner.AUF
SymantecMiner.Zcash!gen1
ESET-NOD32Win64/CoinMiner.AAL
APEXMalicious
Kasperskynot-a-virus:RiskTool.Win64.Miner.blo
BitDefenderApplication.BitCoinMiner.TX
NANO-AntivirusRiskware.Win64.BtcMine.etcbin
AvastWin64:Evo-gen [Trj]
TencentWin64.Risktool.Miner.Qsmw
EmsisoftApplication.BitCoinMiner.TX (B)
GoogleDetected
F-SecureTrojan.TR/Crypt.XPACK.wkhth
VIPREApplication.BitCoinMiner.TX
TrendMicroCoinminer_TOOLETH.A
SophosGeneric Reputation PUA (PUA)
IkarusPUA.CoinMiner
JiangminRiskTool.Generic.frw
AviraTR/Crypt.XPACK.wkhth
Antiy-AVLRiskWare[RiskTool]/Win32.AGeneric
MicrosoftTrojan:Win32/Vigorf.A
XcitiumApplicUnwnt@#pi7f2zc37lvi
ArcabitApplication.BitCoinMiner.TX
ZoneAlarmnot-a-virus:RiskTool.Win64.Miner.blo
GDataApplication.BitCoinMiner.TX
CynetMalicious (score: 99)
AhnLab-V3Unwanted/Win32.BitCoinMiner.C2427897
McAfeeArtemis!A0314777E1EF
MAXmalware (ai score=95)
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/CI.A
RisingTrojan.CoinMiner!8.30A (CLOUD)
SentinelOneStatic AI – Malicious SFX
MaxSecureTrojan.Malware.8125202.susgen
FortinetRiskware/Generic
AVGWin64:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_60% (W)
alibabacloudMiner:Win/CoinMiner.AAL

How to remove Application.BitCoinMiner.TX?

Application.BitCoinMiner.TX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment