Malware

Generic.Application.CoinMiner.1.A363C65B (file analysis)

Malware Removal

The Generic.Application.CoinMiner.1.A363C65B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Application.CoinMiner.1.A363C65B virus can do?

  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Application.CoinMiner.1.A363C65B?


File Info:

crc32: 434E7293
md5: 752b3b99610d679a0a9db0fe17b51a34
name: 752B3B99610D679A0A9DB0FE17B51A34.mlw
sha1: 79f898fd9bae499e75d705262c91f6afa7517cb7
sha256: 6838e1c747ca21463da4eb39795f222ff9baed35da2f435b1a4cff779b9fa137
sha512: 5b39360131afec0d881ed6fc6a3f0141682cd5aab9b5f758fc87222aeb70204a830517526f67322e579785a6b6bd373a5965c82a0c5ebae294034497fd72f418
ssdeep: 24576:YRBrzwX0YmJI8DRnCD4jtnT8Q1r0ly78ipwR7:KJzdnm4lT8Q1r0pieR7
type: PE32 executable (console) Intel 80386 (stripped to external PDB), for MS Windows, UPX compressed

Version Info:

LegalCopyright: xa9 Valve Corporation
ProductName: Steam
FileVersion: 2.10.91.91
FileDescription: Steam
Translation: 0x0816 0x04e4

Generic.Application.CoinMiner.1.A363C65B also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Application.CoinMiner.1.A363C65B
FireEyeGeneric.mg.752b3b99610d679a
CAT-QuickHealTrojan.MinerPMF.S16883260
MalwarebytesTrojan.BitCoinMiner
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusAdware ( 005239ce1 )
BitDefenderGeneric.Application.CoinMiner.1.A363C65B
K7GWAdware ( 005239ce1 )
Cybereasonmalicious.9610d6
CyrenW32/CoinMiner.YUOF-4693
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Coinminer.Generic-7151250-0
KasperskyTrojan.Win32.Miner.aszpv
NANO-AntivirusRiskware.Win32.BtcMine.gmfedn
RisingTrojan.Miner!8.EA1 (TFE:5:1SNaNiR6GKB)
Ad-AwareGeneric.Application.CoinMiner.1.A363C65B
EmsisoftGeneric.Application.CoinMiner.1.A363C65B (B)
ComodoApplication.Win32.CoinMiner.BS@8rlsid
F-SecureHeuristic.HEUR/AGEN.1124159
DrWebTool.BtcMine.2235
ZillyaTrojan.Miner.Win32.9908
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
SophosXMRig Miner (PUA)
SentinelOneStatic AI – Suspicious PE
GDataWin32.Application.Coinminer.BU
JiangminRiskTool.BitMiner.calf
AviraHEUR/AGEN.1124159
Antiy-AVLTrojan/Win32.Miner
GridinsoftTrojan.Win32.CoinMiner.oa!s2
ArcabitGeneric.Application.CoinMiner.1.A363C65B
ZoneAlarmTrojan.Win32.Miner.aszpv
MicrosoftTrojan:Win64/CoinMiner
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.CoinMiner.R356034
Acronissuspicious
McAfeeGenericRXAA-AA!752B3B99610D
MAXmalware (ai score=83)
VBA32BScope.Trojan.Miner
CylanceUnsafe
ESET-NOD32a variant of Win32/CoinMiner.ES potentially unwanted
TencentMalware.Win32.Gencirc.10ce19d0
YandexTrojan.Miner!yOBUgO0rI14
IkarusPUA.CoinMiner
FortinetW32/CryptoMiner.L!tr
BitDefenderThetaGen:NN.ZexaCO.34700.enKfaCPLYioi
AVGWin32:Malware-gen
AvastWin32:Malware-gen

How to remove Generic.Application.CoinMiner.1.A363C65B?

Generic.Application.CoinMiner.1.A363C65B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment