Malware

Generic.Application.CoinMiner.1.74AA331F (file analysis)

Malware Removal

The Generic.Application.CoinMiner.1.74AA331F is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Application.CoinMiner.1.74AA331F virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • Unconventionial binary language: Portuguese (Brazil)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

How to determine Generic.Application.CoinMiner.1.74AA331F?


File Info:

crc32: 5E991C0A
md5: 00fb5c323e2d8d3ebbd3886f5daebd49
name: upload_file
sha1: f8bdd84d8ff4554cb0871fdda39c2ca673e637a1
sha256: c6ad3a6337d39840024e8f77a7b38a0849288f5fd6997e28ddcec1cbfa4d63c8
sha512: 58bb688e588b4de8ca9d8d18d5980506f9e7971c51fd0a36991194612d65d69a2ebc8a821158321dc1703ba22f0f91abbf7859fe72473bcf2906b2e849cda1f9
ssdeep: 24576:lavgp4XjJq1Ore0BSgPiPfJe3LgpjrtA0HI6mDTpUnc0nOjY:gc4zqOrLAPRuLgpt/ItCt
type: PE32 executable (console) Intel 80386 (stripped to external PDB), for MS Windows, UPX compressed

Version Info:

LegalCopyright: (C)Qihu 360 Software Co., Ltd. All rights reserved.
InternalName: boottimetoast
FileVersion: 8,6,0,1000
ProductName: Boot Time Toast Notification
ProductVersion: 8,6,0,1000
FileDescription: Windows 8 Toast Notification
OriginalFilename: boottimetoast.exe
Translation: 0x0416 0x04b0

Generic.Application.CoinMiner.1.74AA331F also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Application.CoinMiner.1.74AA331F
FireEyeGeneric.mg.00fb5c323e2d8d3e
CAT-QuickHealTrojan.GenericPMF.S10700594
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusRiskware ( 0056346e1 )
BitDefenderGeneric.Application.CoinMiner.1.74AA331F
K7GWRiskware ( 0056346e1 )
Cybereasonmalicious.23e2d8
CyrenW32/CoinMiner.BY.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Coinminer.Generic-7151250-0
KasperskyTrojan.Win32.Miner.asxng
NANO-AntivirusRiskware.Win32.BtcMine.gutbsp
RisingTrojan.Miner!8.EA1 (TFE:5:1SNaNiR6GKB)
Ad-AwareGeneric.Application.CoinMiner.1.74AA331F
EmsisoftGeneric.Application.CoinMiner.1.74AA331F (B)
ComodoTrojWare.Win32.CoinMiner.HR@8pgq0i
F-SecureHeuristic.HEUR/AGEN.1133596
DrWebTool.BtcMine.2258
ZillyaTrojan.Miner.Win32.9427
InvinceaXMRig Miner (PUA)
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
SophosXMRig Miner (PUA)
IkarusTrojan.Win32.CoinMiner
JiangminTrojan.Miner.mpr
AviraHEUR/AGEN.1133596
MAXmalware (ai score=87)
Antiy-AVLRiskWare[RiskTool]/Win32.BitCoinMiner
MicrosoftTrojan:Win64/CoinMiner
ArcabitGeneric.Application.CoinMiner.1.74AA331F
ZoneAlarmTrojan.Win32.Miner.asxng
GDataWin32.Application.Coinminer.BU
CynetMalicious (score: 90)
AhnLab-V3Trojan/Win32.Miner.R349954
Acronissuspicious
McAfeeGenericRXAA-AA!00FB5C323E2D
VBA32BScope.Trojan.Miner
MalwarebytesRiskWare.BitCoinMiner
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/CoinMiner.ES potentially unwanted
TencentMalware.Win32.Gencirc.10cdfcf3
YandexRiskware.Agent!
SentinelOneDFI – Suspicious PE
FortinetW32/CoinMiner.ES!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
MaxSecureTrojan.Malware.300983.susgen

How to remove Generic.Application.CoinMiner.1.74AA331F?

Generic.Application.CoinMiner.1.74AA331F removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment