Malware

How to remove “Mal/Generic-R + Mal/Miner-J”?

Malware Removal

The Mal/Generic-R + Mal/Miner-J is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-R + Mal/Miner-J virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics
  • CAPE detected the CoinMiner04 malware family

How to determine Mal/Generic-R + Mal/Miner-J?


File Info:

name: 495B196514558B6BEB86.mlw
path: /opt/CAPEv2/storage/binaries/19484b353d2c974b0275c09665bc99ce4e1279bf2ef4643dfa2acb61f416639c
crc32: D31A01E4
md5: 495b196514558b6beb86953299642e34
sha1: a1b3e38f2e947888b275313a0d1d82dcc370d703
sha256: 19484b353d2c974b0275c09665bc99ce4e1279bf2ef4643dfa2acb61f416639c
sha512: 52042f355edf96b421cebbc77e4dbf6286ff5c8010dfa6e16de82085ba30a6bade632fd945e45c81a2cce95d41ddc2e126f8a22ac19fb52781bf4069fb12a716
ssdeep: 49152:UmNDFFPJu8fBsVE6ij+RNg+UKpBvtqB3m1RC3:U8zP88fBsnZTgOtqB3m1RC3
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T13616AE12BBD58F2BC5564B388AE783647379DC904B43575BA34AB12D3DB23E02B871D8
sha3_384: 7786fa31f54867f7cd81ab8642ea1b07445c2137f8a6b305da626eb7aa25c3a0cef53b5b8a19031bfc3bc91b5a53ea30
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-11-30 16:31:36

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: svchost
FileVersion: 1.0.0.0
InternalName: miner.exe
LegalCopyright: Copyright © 2019
LegalTrademarks:
OriginalFilename: miner.exe
ProductName: svchost
ProductVersion: 1.0.0.0
Assembly Version: 0.0.0.0

Mal/Generic-R + Mal/Miner-J also known as:

LionicTrojan.Win64.Prometei.4!c
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop15.59504
MicroWorld-eScanTrojan.GenericKD.47582058
FireEyeGeneric.mg.495b196514558b6b
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
ALYacTrojan.GenericKD.47582058
ZillyaTrojan.CoinMiner.Win32.41074
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojan:Win32/CoinMiner.ali1002002
K7GWTrojan ( 00517fbc1 )
K7AntiVirusTrojan ( 00517fbc1 )
BitDefenderThetaGen:NN.ZemsilF.34062.9p0@a8ckDgm
CyrenW32/MSIL_Coinminer.E.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/CoinMiner.ACZ
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 99)
KasperskyTrojan.Win64.Prometei.p
BitDefenderTrojan.GenericKD.47582058
AvastWin32:Miner-DM [Trj]
TencentWin64.Trojan.Prometei.Pdct
Ad-AwareTrojan.GenericKD.47582058
EmsisoftTrojan.CoinMiner (A)
TrendMicroTROJ_GEN.R002C0DL121
McAfee-GW-EditionPUP-XDQ-WD
SophosMal/Generic-R + Mal/Miner-J
IkarusTrojan.MSIL.CoinMiner
GDataTrojan.GenericKD.47582058
WebrootTrojanSpy:MSIL/VB.A
AviraTR/ATRAPS.Gen
Antiy-AVLTrojan/Generic.ASCommon.203
KingsoftWin32.Troj.Undef.(kcloud)
GridinsoftTrojan.Win32.Gen.sd!n
ArcabitTrojan.Generic.D2D60B6A
ViRobotTrojan.Win32.Z.Coinminer.4157440.O
MicrosoftTrojan:MSIL/CoinMiner.S!bit
AhnLab-V3Trojan/Win32.CoinMiner.R338384
McAfeePUP-XDQ-WD
MAXmalware (ai score=86)
VBA32Trojan.MSIL.gen.m
MalwarebytesTrojan.Crypt.Generic
TrendMicro-HouseCallTROJ_GEN.R002C0DL121
YandexTrojan.CoinMiner!Q7x3DyPTXwE
SentinelOneStatic AI – Malicious PE
FortinetMSIL/Generic.AP.12C58B6!tr
AVGWin32:Miner-DM [Trj]
Cybereasonmalicious.514558
PandaTrj/GdSda.A

How to remove Mal/Generic-R + Mal/Miner-J?

Mal/Generic-R + Mal/Miner-J removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment