Categories: Risk

About “Risktool.Win64.BitCoinMiner” infection

The Risktool.Win64.BitCoinMiner is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Risktool.Win64.BitCoinMiner virus can do?

    How to determine Risktool.Win64.BitCoinMiner?

    
    

    File Info:

    crc32: 61A00AC4md5: 054857d4abf953070f49bf9b42e7749bname: xme64-262.exesha1: 174e84e1e8ee1ae9405fb231c990dacca1ebbfdasha256: 24fda4862a9fd814a528e0474d99c4b1f41a3c45872d918ce8fa7696ac7a6d74sha512: 9ab8227a5a60ebb47881342730eec998f6f5dbe73c3662e52bf1f49cdba4f186ad4872d220e072cf3cd08d4299de02500fc1a66bfe3b8fb1f14929ac1963b120ssdeep: 12288:CKdKT51z/XRGSIZAu8COJYBGJdibcznmfGWLxA9pbAVBNJAAeKKGMXq5YMH3wMX:vd0X/X7JFiim+WtVBNJAAexGMXc/Xtype: PE32+ executable (console) x86-64, for MS Windows

    Version Info:

    0: [No Data]

    Risktool.Win64.BitCoinMiner also known as:

    MicroWorld-eScan Application.CoinMiner.DW
    CAT-QuickHeal Trojan.Miner.ZZ5
    McAfee W64/CoinMiner!054857D4ABF9
    Cylance Unsafe
    VIPRE Trojan.Win32.Generic!BT
    Sangfor Malware
    BitDefender Application.CoinMiner.DW
    Cybereason malicious.4abf95
    Arcabit Application.CoinMiner.DW
    Invincea heuristic
    ESET-NOD32 a variant of Win64/CoinMiner.CY potentially unwanted
    APEX Malicious
    Paloalto generic.ml
    ClamAV Win.Coinminer.Generic-7151253-0
    Kaspersky not-a-virus:HEUR:RiskTool.Win32.BitCoinMiner.gen
    NANO-Antivirus Riskware.Win64.BitCoinMiner.fbnzkf
    SUPERAntiSpyware Hack.Tool/Gen-BitCoinMiner
    Endgame malicious (high confidence)
    Emsisoft Application.CoinMiner.DW (B)
    Comodo ApplicUnwnt@#14ube4r45edec
    TrendMicro Coinminer.Win64.TOOLXMR.SMA
    McAfee-GW-Edition BehavesLike.Win64.CoinMiner.fh
    Fortinet W64/CryptoMiner.L!tr
    Trapmine malicious.high.ml.score
    FireEye Generic.mg.054857d4abf95307
    Sophos XMRig Miner (PUA)
    Ikarus PUA.CoinMiner
    Jiangmin RiskTool.BitCoinMiner.hjj
    Webroot W32.Bitcoinminer
    MAX malware (ai score=98)
    Antiy-AVL GrayWare/Win32.CoinMiner.fd
    Microsoft PUA:Win64/CoinMiner
    ViRobot Trojan.Win64.S.Miner.1042432
    ZoneAlarm not-a-virus:HEUR:RiskTool.Win32.BitCoinMiner.gen
    AhnLab-V3 Trojan/Win32.Miner.C2451157
    Acronis suspicious
    VBA32 Risktool.Win64.BitCoinMiner
    ALYac Misc.Riskware.BitCoinMiner
    Ad-Aware Application.CoinMiner.DW
    Panda Trj/CI.A
    TrendMicro-HouseCall Coinminer_CryptoNight.SM-WIN64
    Rising Trojan.Win32/64.XMR-Miner!1.ADCC (CLOUD)
    Yandex Riskware.Agent!
    SentinelOne DFI – Malicious PE
    eGambit Unsafe.AI_Score_98%
    GData Application.CoinMiner.DW
    AVG Win32:CryptoMiner-L [Trj]
    Avast Win32:CryptoMiner-L [Trj]
    CrowdStrike win/malicious_confidence_90% (D)
    Qihoo-360 Win32/Virus.RiskTool.46f

    How to remove Risktool.Win64.BitCoinMiner?

    • Download and install GridinSoft Anti-Malware.
    • Open GridinSoft Anti-Malware and perform a “Standard scan“.
    • Move to quarantine” all items.
    • Open “Tools” tab – Press “Reset Browser Settings“.
    • Select proper browser and options – Click “Reset”.
    • Restart your computer.
    Paul Valéry

    I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

    Share
    Published by
    Paul Valéry

    Recent Posts

    MSIL/GenKryptik.GXIZ information

    The MSIL/GenKryptik.GXIZ is considered dangerous by lots of security experts. When this infection is active,…

    2 weeks ago

    Malware.AI.2789448175 (file analysis)

    The Malware.AI.2789448175 is considered dangerous by lots of security experts. When this infection is active,…

    2 weeks ago

    Jalapeno.1878 removal instruction

    The Jalapeno.1878 is considered dangerous by lots of security experts. When this infection is active,…

    2 weeks ago

    What is “Trojan.Heur3.LPT.YmKfaKBcBekib”?

    The Trojan.Heur3.LPT.YmKfaKBcBekib is considered dangerous by lots of security experts. When this infection is active,…

    2 weeks ago

    How to remove “Worm.Win32.Vobfus.exmt”?

    The Worm.Win32.Vobfus.exmt is considered dangerous by lots of security experts. When this infection is active,…

    2 weeks ago

    About “TrojanDownloader:Win32/Beebone.JO” infection

    The TrojanDownloader:Win32/Beebone.JO is considered dangerous by lots of security experts. When this infection is active,…

    2 weeks ago