Malware

Generic.Application.CoinMiner.1.C2C4D88A removal instruction

Malware Removal

The Generic.Application.CoinMiner.1.C2C4D88A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Application.CoinMiner.1.C2C4D88A virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Generic.Application.CoinMiner.1.C2C4D88A?


File Info:

crc32: 15B4AE69
md5: dccdf632e4117cff2d4f7e67e8494877
name: upload_file
sha1: 3958fefb834819ab8c09056d6ab02aabb40c068d
sha256: 33fc79f2014f59a7d022c8c791b09a7067e2ab6040f4be34b8a8754d7eecc2ee
sha512: abc151b7bc4c692b6520d69cb079d757a969bfcd1d8ad04950a33d6c869d5a1fbd5594cffa1cc2a1522294ab76a41c3600f0cd038660a456db75895c0263e550
ssdeep: 24576:PRBrzwX0YmJI8DRnCD4jtnT8Q1r0ly78ipwR7:ZJzdnm4lT8Q1r0pieR7
type: PE32 executable (console) Intel 80386 (stripped to external PDB), for MS Windows, UPX compressed

Version Info:

LegalCopyright: (c) . All rights reserved.
InternalName: CommonUtils.dll
FileVersion: 1.0.0.1
CompanyName: Industrial and Commercial Bank of China
ProductName: CommonUtils
ProductVersion: 1.0.0.1
FileDescription: CommonUtils
OriginalFilename: CommonUtils.dll
Translation: 0x0409 0x04e4

Generic.Application.CoinMiner.1.C2C4D88A also known as:

BkavW32.FamVT.NusdenGP.Trojan
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Application.CoinMiner.1.C2C4D88A
FireEyeGeneric.mg.dccdf632e4117cff
CAT-QuickHealPUA.CoinminerPMF.S9547169
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 0056a9881 )
BitDefenderGeneric.Application.CoinMiner.1.C2C4D88A
K7GWTrojan ( 0056a9881 )
Cybereasonmalicious.2e4117
Invinceaheuristic
BitDefenderThetaGen:NN.ZexaF.34152.dnKfaC9N9Fci
F-ProtW32/CoinMiner.BW
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/CoinMiner.ES potentially unwanted
AvastWin32:Malware-gen
ClamAVWin.Coinminer.Generic-7151250-0
KasperskyHEUR:Trojan.Win32.Miner.vho
NANO-AntivirusRiskware.Win32.BtcMine.gmfedn
RisingTrojan.Miner!8.EA1 (TFE:dGZlOgXFnjeLjxuMDQ)
Ad-AwareGeneric.Application.CoinMiner.1.C2C4D88A
ComodoApplication.Win32.CoinMiner.BS@8rlsid
F-SecureHeuristic.HEUR/AGEN.1133596
DrWebTool.BtcMine.2235
ZillyaTrojan.Miner.Win32.9908
SentinelOneDFI – Suspicious PE
SophosXMRig Miner (PUA)
APEXMalicious
CyrenW32/CoinMiner.YUOF-4693
JiangminRiskTool.BitMiner.calf
MaxSecureTrojan.Malware.121218.susgen
AviraHEUR/AGEN.1133596
FortinetW32/CryptoMiner.L!tr
Antiy-AVLTrojan/Win32.Miner
ArcabitGeneric.Application.CoinMiner.1.C2C4D88A
AhnLab-V3Trojan/Win32.CoinMiner.R336602
MicrosoftTrojan:Win64/CoinMiner
CynetMalicious (score: 90)
Acronissuspicious
McAfeeGenericRXAA-AA!DCCDF632E411
MAXmalware (ai score=84)
VBA32BScope.Trojan.Miner
MalwarebytesTrojan.BitCoinMiner
PandaTrj/Genetic.gen
TencentMalware.Win32.Gencirc.10ba432e
YandexRiskware.Agent!
IkarusPUA.CoinMiner
GDataWin32.Application.Coinminer.BU
AVGWin32:Malware-gen

How to remove Generic.Application.CoinMiner.1.C2C4D88A?

Generic.Application.CoinMiner.1.C2C4D88A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment