PUA

ELF:BitCoinMiner-CW [PUP] removal

Malware Removal

The ELF:BitCoinMiner-CW [PUP] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What ELF:BitCoinMiner-CW [PUP] virus can do?

  • Injection (inter-process)
  • Injection with CreateRemoteThread in a remote process
  • Uses Windows utilities for basic functionality
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine ELF:BitCoinMiner-CW [PUP]?


File Info:

crc32: DCCB3E8B
md5: e53800b59689737f1fdca6592d3a32e9
name: tmpt_qwg2r0
sha1: 05694974fed4c52e4103836838fe8e28d22db6a1
sha256: 900427f832849f6bc305e43a39e5be40b1e0f4ee8928c7b7d2d3274901ca422e
sha512: 11ea4601e024aae5386cfeaa4653c9d0c3fac734eba261fa21a5198289630e0466659e0344c45a28e9aaadad5df3d5434d5a4a06dd0d3bc97b461fb8287cc2f5
ssdeep: 98304:2XrVAo/K/hLTQsIRYwomYUxv+Tfl1wC7cXITYys6Vk5GpEhhZMdYCJq0Xwe0AJV5:2XRchVIRYw1iBl3s95ThhZMdYuq0F0G7
type: ERROR: ELF 64-bit LSB executable, x86-64, version 1 (GNU/Linux), statically linkederror reading (Invalid argument)

Version Info:

0: [No Data]

ELF:BitCoinMiner-CW [PUP] also known as:

MicroWorld-eScanTrojan.GenericKD.34004429
FireEyeTrojan.GenericKD.34004429
ALYacTrojan.GenericKD.34004429
SangforMalware
AvastELF:BitCoinMiner-CW [PUP]
ClamAVMultios.Coinminer.Miner-6781728-2
GDataTrojan.GenericKD.34004429
BitDefenderTrojan.GenericKD.34004429
Ad-AwareTrojan.GenericKD.34004429
EmsisoftTrojan.GenericKD.34004429 (B)
MAXmalware (ai score=82)
ArcabitTrojan.Generic.D206DDCD
ESET-NOD32a variant of Linux/CoinMiner.AW potentially unwanted
AVGELF:BitCoinMiner-CW [PUP]

How to remove ELF:BitCoinMiner-CW [PUP]?

ELF:BitCoinMiner-CW [PUP] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment