Risk

How to remove “RiskTool.Win32.BitCoinMiner.oena”?

Malware Removal

The RiskTool.Win32.BitCoinMiner.oena is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What RiskTool.Win32.BitCoinMiner.oena virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX

How to determine RiskTool.Win32.BitCoinMiner.oena?


File Info:

crc32: 9C2669D8
md5: 508e0ad4dc2dfe4927a53f1a76ee95e3
name: 508E0AD4DC2DFE4927A53F1A76EE95E3.mlw
sha1: b95efeecbe0f9a597a33a7313b973b94fceef796
sha256: a498b7226e168440c5de52bc4153f0a8af3d0ce15f1642443778048754d64191
sha512: 88f9f2832943877fed8e0df442dbd6c4a9de1db741eda40cd1b2372da002cc0d77751d73778d0d7ddde533c00b9387d2238cfcf6512a1a60d3e246d92242a0d5
ssdeep: 12288:glek7VIjq4/AttnfMznf81aW56jmi4EAEKw46Ye/WOw6iuex082+ueN3RHsub:K9KE8WHEm6Yjjduex082+VNhHsE
type: PE32+ executable (console) x86-64, for MS Windows

Version Info:

LegalCopyright:
InternalName:
FileVersion: 1.0.10.20
CompanyName:
LegalTrademarks:
Comments:
ProductName: TextEditx6587x672cx7f16x8f91x5668
Aditional Notes:
FileDescription: TextEditx6587x672cx7f16x8f91x5668
OriginalFilename:
ProductVersion: 1.0.10.20
Translation: 0x0804 0x03a8

RiskTool.Win32.BitCoinMiner.oena also known as:

Elasticmalicious (high confidence)
ClamAVWin.Malware.Generickdz-9775964-0
FireEyeGeneric.mg.508e0ad4dc2dfe49
McAfeeGenericRXAA-AA!508E0AD4DC2D
CylanceUnsafe
SangforMalware
BitDefenderTrojan.GenericKDZ.65744
Cybereasonmalicious.cbe0f9
CyrenW64/CoinMiner.CF.gen!Eldorado
SymantecTrojan.Gen.2
APEXMalicious
AvastWin64:CoinminerX-gen [Trj]
CynetMalicious (score: 100)
Kasperskynot-a-virus:RiskTool.Win32.BitCoinMiner.oena
MicroWorld-eScanTrojan.GenericKDZ.65744
RisingTrojan.Win32/64.XMR-Miner!1.ADCC (TFE:5:cWlFX9xRAN)
Ad-AwareTrojan.GenericKDZ.65744
EmsisoftApplication.Generic (A)
F-SecureHeuristic.HEUR/AGEN.1135765
DrWebTool.BtcMine.2239
InvinceaTroj/Agent-BCPO
McAfee-GW-EditionBehavesLike.Win64.CoinMiner.cc
SophosTroj/Agent-BCPO
IkarusTrojan.Win64.CoinMiner
JiangminRiskTool.Generic.pkx
AviraHEUR/AGEN.1135765
MAXmalware (ai score=80)
Antiy-AVLTrojan/Win32.Wacatac
MicrosoftTrojanDownloader:Win32/Upatre
ArcabitTrojan.Generic.D100D0
AhnLab-V3Trojan/Win64.Miner3.C4209403
ZoneAlarmnot-a-virus:RiskTool.Win32.BitCoinMiner.oena
GDataTrojan.GenericKDZ.65744
ESET-NOD32a variant of Win64/CoinMiner.PQ potentially unwanted
Acronissuspicious
ALYacTrojan.GenericKDZ.65744
MalwarebytesRiskWare.BitCoinMiner
TencentMalware.Win32.Gencirc.10ce13ad
YandexTrojan.GenAsa!Xy4KCITNuvE
SentinelOneStatic AI – Suspicious PE
FortinetW64/CoinMiner.X!tr
AVGWin64:CoinminerX-gen [Trj]
CrowdStrikewin/malicious_confidence_60% (D)

How to remove RiskTool.Win32.BitCoinMiner.oena?

RiskTool.Win32.BitCoinMiner.oena removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment