Malware

Generic.Application.CoinMiner.1.1D7811CF removal guide

Malware Removal

The Generic.Application.CoinMiner.1.1D7811CF is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Application.CoinMiner.1.1D7811CF virus can do?

  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Application.CoinMiner.1.1D7811CF?


File Info:

crc32: B98DF932
md5: e10b9f3467eb8df0e8043c7b290f69c6
name: E10B9F3467EB8DF0E8043C7B290F69C6.mlw
sha1: 9263f2cb28c2e6765c675bdc3ad27487c875c25c
sha256: a57addf27adab71ffe63989a2c48215398e234b482caac4ec0a666305a1a8fb3
sha512: 1cbf8288d28a5b507a93bcb39816c0b9c35b0ef865bbe53d4035bba49c1b19d8eee94935a04af712b87c97118de9efed47533e64be8698a0182285e297368c1f
ssdeep: 24576:URBrzwX0YmJI8DRnCD4jtnT8Q1r0ly78ipwR7:uJzdnm4lT8Q1r0pieR7
type: PE32 executable (console) Intel 80386 (stripped to external PDB), for MS Windows, UPX compressed

Version Info:

LegalCopyright: xa9 Valve Corporation
ProductName: Steam
FileVersion: 2.10.91.91
FileDescription: Steam
Translation: 0x0816 0x04e4

Generic.Application.CoinMiner.1.1D7811CF also known as:

Elasticmalicious (high confidence)
ClamAVWin.Coinminer.Generic-7151250-0
FireEyeGeneric.mg.e10b9f3467eb8df0
CAT-QuickHealTrojan.MinerPMF.S16913522
MalwarebytesTrojan.BitCoinMiner
ZillyaTrojan.Miner.Win32.9908
SangforMalware
K7AntiVirusAdware ( 005239ce1 )
BitDefenderGeneric.Application.CoinMiner.1.1D7811CF
K7GWAdware ( 005239ce1 )
CyrenW32/CoinMiner.YUOF-4693
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Miner.aszpv
AlibabaTrojan:Win32/Miner.9605c779
NANO-AntivirusRiskware.Win32.BtcMine.gmfedn
AegisLabTrojan.Win32.Miner.4!c
MicroWorld-eScanGeneric.Application.CoinMiner.1.1D7811CF
TencentMalware.Win32.Gencirc.10ce19d0
Ad-AwareGeneric.Application.CoinMiner.1.1D7811CF
SophosXMRig Miner (PUA)
ComodoApplication.Win32.CoinMiner.BS@8rlsid
F-SecureHeuristic.HEUR/AGEN.1124159
DrWebTool.BtcMine.2235
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0DLG20
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
EmsisoftGeneric.Application.CoinMiner.1.1D7811CF (B)
IkarusPUA.CoinMiner
JiangminRiskTool.BitMiner.calf
AviraHEUR/AGEN.1124159
MAXmalware (ai score=85)
Antiy-AVLTrojan/Win32.Miner
MicrosoftTrojan:Win64/CoinMiner
GridinsoftTrojan.Win32.CoinMiner.oa!s2
ArcabitGeneric.Application.CoinMiner.1.1D7811CF
ZoneAlarmTrojan.Win32.Miner.aszpv
GDataWin32.Application.Coinminer.BU
AhnLab-V3Trojan/Win32.CoinMiner.R356034
Acronissuspicious
McAfeeGenericRXAA-AA!E10B9F3467EB
VBA32BScope.Trojan.Miner
ESET-NOD32a variant of Win32/CoinMiner.ES potentially unwanted
TrendMicro-HouseCallTROJ_GEN.R002C0DLG20
RisingTrojan.Miner!8.EA1 (TFE:5:1SNaNiR6GKB)
YandexTrojan.Miner!yOBUgO0rI14
SentinelOneStatic AI – Suspicious PE
FortinetW32/CryptoMiner.L!tr
BitDefenderThetaGen:NN.ZexaCO.34700.enKfaKpRuUpi
AVGWin32:Malware-gen
Qihoo-360Win32/Trojan.d2d

How to remove Generic.Application.CoinMiner.1.1D7811CF?

Generic.Application.CoinMiner.1.1D7811CF removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment