Adware Reports malware removal guides and threat research Updated security instructions for Windows users
Threat report

Generic.Application.CoinMiner.1.FD343B6D malicious file

Published Oct 6, 2021 Malware category 3 min read
Report context

What to verify before removal

This report keeps Generic.Application.CoinMiner.1.FD343B6D malicious file in the active library because the detection has enough technical context to support a careful second-opinion scan and cleanup decision.

The technical section is meant to connect the detection name with observable evidence such as high CPU/GPU load, startup persistence, and connections to mining pools or proxy hosts. Compare the identifiers here with the local file before deleting anything, then use the cleanup workflow to scan, quarantine, and verify the system state.

  • Confirm the detection name matches Generic.Application.CoinMiner.1.FD343B6D malicious file before removing related files.
  • Review the report for high CPU/GPU load, startup persistence, and connections to mining pools or proxy hosts so the cleanup is based on observed behavior, not only the label.
  • Stop the suspicious process first, then scan startup entries and scheduled tasks for reinfection points.

The Generic.Application.CoinMiner.1.FD343B6D is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

What Generic.Application.CoinMiner.1.FD343B6D virus can do?

  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz

How to determine Generic.Application.CoinMiner.1.FD343B6D?


File Info:

crc32: 124FFA11
md5: cc5fad45cc1d557344a6fbde9bf5d02e
name: CC5FAD45CC1D557344A6FBDE9BF5D02E.mlw
sha1: bfe27fd4659b5f311da5425a4edb077ade061c87
sha256: 2d056fde1e847f9c397a9b0e9fce610adda4d7f61c35c638c44f04413d74517e
sha512: b657b31ad434751ad90bf12aafd61e012923a1212149f092e55c6571476d96caac17fd4114e3976aafe3e9bc5674a39d44292cbf968527e04154f2bb8952caf3
ssdeep: 12288:nSamwq1lxR2s5DRwqxjONTlXLnzrvg99cI9t76k5ebkzwWyWQMwYCKBzc0XSffq:nSum32EwqxjONTlXLnzM9tXlQtYVc0X
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright SystemProcess (C) 2018
FileVersion: 1.0
CompanyName: SystemProcess Inc.
ProductName: SystemProcess
ProductVersion: 1.0
FileDescription: SystemProcess
Translation: 0x0409 0x04b0

Generic.Application.CoinMiner.1.FD343B6D also known as:

K7AntiVirus Adware ( 0056d19b1 )
ClamAV Multios.Trojan.CryptocoinMiner-6448864-1
ALYac DeepScan:Generic.Application.CoinMiner.1.FD343B6D
Malwarebytes Bitcoin.Trojan.Miner.DDS
Sangfor Trojan.Win32.Save.a
CrowdStrike win/malicious_confidence_100% (D)
K7GW Adware ( 0056d19b1 )
Cybereason malicious.5cc1d5
Cyren W32/S-2a62bfd6!Eldorado
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/CoinMiner.JL potentially unwanted
APEX Malicious
Avast Win32:MalwareX-gen [Trj]
Cynet Malicious (score: 100)
Kaspersky HEUR:Trojan.Win64.Miner.gen
BitDefender DeepScan:Generic.Application.CoinMiner.1.FD343B6D
NANO-Antivirus Riskware.Win32.BitMiner.exhuqm
MicroWorld-eScan DeepScan:Generic.Application.CoinMiner.1.FD343B6D
Ad-Aware DeepScan:Generic.Application.CoinMiner.1.FD343B6D
Sophos Generic PUA LP (PUA)
Comodo ApplicUnwnt@#3666v1moyh76g
BitDefenderTheta Gen:NN.ZexaF.34170.Sq0@aWCexToi
VIPRE Trojan.Win32.Generic!BT
FireEye Generic.mg.cc5fad45cc1d5573
Emsisoft DeepScan:Generic.Application.CoinMiner.1.FD343B6D (B)
SentinelOne Static AI – Malicious PE
Jiangmin RiskTool.BitMiner.ahel
eGambit Unsafe.AI_Score_98%
Antiy-AVL Trojan/Generic.ASMalwS.240FE27
Kingsoft Win32.Troj.Gener.(kcloud)
Microsoft Trojan:Win32/Wacatac.A!ml
SUPERAntiSpyware Hack.Tool/Gen-BitCoinMiner
ZoneAlarm not-a-virus:HEUR:RiskTool.Win32.BitMiner.gen
GData DeepScan:Generic.Application.CoinMiner.1.FD343B6D
AhnLab-V3 Unwanted/Win32.CoinMiner.C3440215
VBA32 Trojan.Win64.Miner
MAX malware (ai score=98)
Panda Trj/Genetic.gen
Rising HackTool.CoinMiner!1.B033 (CLASSIC)
Yandex Trojan.GenAsa!qlALZWNM0FM
Ikarus PUA.YoBrowser
MaxSecure Trojan.Malware.11502151.susgen
Fortinet Riskware/BitMiner
AVG Win32:MalwareX-gen [Trj]
Paloalto generic.ml

How to remove Generic.Application.CoinMiner.1.FD343B6D?

Recommended second-opinion scan

Verify the infection before changing system settings

Use GridinSoft Anti-Malware to run a full scan, review detected persistence entries, and quarantine confirmed threats before restarting Windows.

Download GridinSoft Anti-Malware
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.