Malware

Generic.Application.CoinMiner.1.B094BB08 removal

Malware Removal

The Generic.Application.CoinMiner.1.B094BB08 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Application.CoinMiner.1.B094BB08 virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

How to determine Generic.Application.CoinMiner.1.B094BB08?


File Info:

crc32: 5DDFD7BB
md5: fc7b4450e702eb1b15014b697385e371
name: upload_file
sha1: df900d34391fad09cf5ee8d94b3977f506cd5ad6
sha256: 031ed8f739432fa406caab91cd260b3526e8522cbcfa4935380b1b8d0af17bd6
sha512: 03ff86b7ebd9b78f2b68728e9641855c773fbc9e85482aaf4f430fb99d9de5934e0bbc18c11ecf3b3c5fe264f0a048149ed657b2e6d932013eecb7dd10e15246
ssdeep: 24576:RRBrzwX0YmJI8DRnCD4jtnT8Q1r0ly78ipwR7O:DJzdnm4lT8Q1r0pieR7
type: PE32 executable (console) Intel 80386 (stripped to external PDB), for MS Windows, UPX compressed

Version Info:

LegalCopyright: Copyright xa9 2002 - 2017 Nir Sofer
InternalName: IECookiesView
FileVersion: 1.79
CompanyName: NirSoft
ProductName: IECookiesView
ProductVersion: 1.79
FileDescription: IECookiesView
OriginalFilename: iecv.exe
Translation: 0x0409 0x04b0

Generic.Application.CoinMiner.1.B094BB08 also known as:

Elasticmalicious (high confidence)
DrWebTool.BtcMine.2235
MicroWorld-eScanGeneric.Application.CoinMiner.1.B094BB08
FireEyeGeneric.mg.fc7b4450e702eb1b
CAT-QuickHealPUA.CoinminerPMF.S9547169
McAfeeGenericRXAA-AA!FC7B4450E702
CylanceUnsafe
ZillyaTrojan.Miner.Win32.9908
SangforMalware
BitDefenderGeneric.Application.CoinMiner.1.B094BB08
K7GWAdware ( 005239ce1 )
Cybereasonmalicious.0e702e
BitDefenderThetaGen:NN.ZexaCO.34298.dnKfaiB9e3ni
CyrenW32/CoinMiner.YUOF-4693
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Evo-gen [Susp]
ClamAVWin.Coinminer.Generic-7151250-0
KasperskyTrojan.Win32.Miner.asyao
NANO-AntivirusRiskware.Win32.BtcMine.gmfedn
Ad-AwareGeneric.Application.CoinMiner.1.B094BB08
EmsisoftGeneric.Application.CoinMiner.1.B094BB08 (B)
ComodoApplication.Win32.CoinMiner.BS@8rlsid
F-SecureHeuristic.HEUR/AGEN.1133596
VIPRETrojan.Win32.Generic!BT
InvinceaXMRig Miner (PUA)
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
SophosXMRig Miner (PUA)
JiangminRiskTool.BitMiner.calf
AviraHEUR/AGEN.1133596
MAXmalware (ai score=83)
Antiy-AVLTrojan/Win32.Miner
MicrosoftTrojan:Win64/CoinMiner
ArcabitGeneric.Application.CoinMiner.1.B094BB08
ZoneAlarmTrojan.Win32.Miner.asyao
GDataWin32.Application.Coinminer.BU
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.CoinMiner.R352663
Acronissuspicious
VBA32BScope.Trojan.Miner
MalwarebytesTrojan.BitCoinMiner
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/CoinMiner.ES potentially unwanted
RisingTrojan.Miner!8.EA1 (TFE:5:1SNaNiR6GKB)
Ikarusnot-a-virus:PSWTool.Win32.NetPass
FortinetW32/CryptoMiner.L!tr
AVGWin32:Evo-gen [Susp]

How to remove Generic.Application.CoinMiner.1.B094BB08?

Generic.Application.CoinMiner.1.B094BB08 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment