Malware

About “Generic.Application.CoinMiner.1.E36489B4” infection

Malware Removal

The Generic.Application.CoinMiner.1.E36489B4 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Application.CoinMiner.1.E36489B4 virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX

How to determine Generic.Application.CoinMiner.1.E36489B4?


File Info:

crc32: 852FCC65
md5: cfc91c8c1784bb9d25e06116b2b9a244
name: CFC91C8C1784BB9D25E06116B2B9A244.mlw
sha1: 1267856908ca874f8cac6cb5ab9e4e765aa5f112
sha256: 5bcbe345cd852db3a7e1c071325582919c060ca97ba11d31fab27e5f545a9d78
sha512: 7a611384ff90109f1e36ebdaf92ef7ac5c9d455dcb0818a457d22ea8ce1505e5c307322ac4d8b2616bcc7665d9d7cf947dd6de31bae26e470b7d4064b36d6013
ssdeep: 24576:cRBrzwX0YmJI8DRnCD4jtnT8Q1r0ly78ipwR7:2Jzdnm4lT8Q1r0pieR7
type: PE32 executable (console) Intel 80386 (stripped to external PDB), for MS Windows, UPX compressed

Version Info:

LegalCopyright: xa9 Valve Corporation
ProductName: Steam
FileVersion: 2.10.91.91
FileDescription: Steam
Translation: 0x0816 0x04e4

Generic.Application.CoinMiner.1.E36489B4 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusRiskware ( 00574bb11 )
Elasticmalicious (high confidence)
DrWebTool.BtcMine.2235
CynetMalicious (score: 100)
CAT-QuickHealPUA.CoinminerPMF.S18363099
ALYacGeneric.Application.CoinMiner.1.E36489B4
CylanceUnsafe
ZillyaTrojan.Miner.Win32.9908
SangforTrojan.Win32.Save.a
K7GWRiskware ( 00574bb11 )
Cybereasonmalicious.c1784b
CyrenW32/CoinMiner.YUOF-4693
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/CoinMiner.ES potentially unwanted
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Coinminer.Generic-7151250-0
KasperskyHEUR:Trojan.Win32.Miner.gen
BitDefenderGeneric.Application.CoinMiner.1.E36489B4
NANO-AntivirusRiskware.Win32.BtcMine.gmfedn
MicroWorld-eScanGeneric.Application.CoinMiner.1.E36489B4
TencentMalware.Win32.Gencirc.10ce19d0
Ad-AwareGeneric.Application.CoinMiner.1.E36489B4
SophosXMRig Miner (PUA)
ComodoApplication.Win32.CoinMiner.BS@8rlsid
BitDefenderThetaGen:NN.ZexaCO.34608.enKfa8FBddki
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
FireEyeGeneric.mg.cfc91c8c1784bb9d
EmsisoftGeneric.Application.CoinMiner.1.E36489B4 (B)
SentinelOneStatic AI – Suspicious PE
AviraHEUR/AGEN.1124159
MicrosoftTrojan:Win64/CoinMiner
GridinsoftTrojan.Win32.CoinMiner.oa!s2
ArcabitGeneric.Application.CoinMiner.1.E36489B4
GDataWin32.Application.Coinminer.BU
AhnLab-V3Trojan/Win32.CoinMiner.R356034
Acronissuspicious
McAfeeGenericRXAA-AA!CFC91C8C1784
MAXmalware (ai score=86)
VBA32BScope.Trojan.Miner
MalwarebytesBitcoin.Trojan.Miner.DDS
PandaTrj/Genetic.gen
RisingTrojan.Miner!8.EA1 (TFE:5:1SNaNiR6GKB)
IkarusPUA.CoinMiner
FortinetW32/CryptoMiner.L!tr
AVGWin32:Malware-gen
Qihoo-360HEUR/QVM11.1.E09F.Malware.Gen

How to remove Generic.Application.CoinMiner.1.E36489B4?

Generic.Application.CoinMiner.1.E36489B4 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment