Risk

RiskWare.BitCoinMiner.UPX removal tips

Malware Removal

The RiskWare.BitCoinMiner.UPX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What RiskWare.BitCoinMiner.UPX virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine RiskWare.BitCoinMiner.UPX?


File Info:

crc32: F0831B30
md5: ba77c5ae2b2494e98c6997a98d266b14
name: BA77C5AE2B2494E98C6997A98D266B14.mlw
sha1: 302460f8f27e54c043fdb07594a0e49342252874
sha256: 806062d87954556a9b9ba3eebd5f1f19c216a1cef0e6661c75c22e252f0eef8c
sha512: abb170e2d4874a2d0b4b3e7209649db5bc12b07e4bd0dd0a3e880343acf1ba5c5f4cf59fb3ae3d44c74fa0cd1f1fb89d996761e2d5f7765ae7d9e5e1a38e880e
ssdeep: 12288:c6VScNQ2JPPILK50EvIfc/MSMK5z1iKXzdkHjKN5TQA25OysQD963hoSdu:c6VSyvP5hvIe1iYpgjOR25Oys33
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

RiskWare.BitCoinMiner.UPX also known as:

BkavW32.AIDetect.malware1
K7AntiVirusAdware ( 0055fa291 )
DrWebTrojan.BtcMine.3528
CynetMalicious (score: 99)
CAT-QuickHealTrojan.Multi
ALYacTrojan.GenericKD.36899261
CylanceUnsafe
ZillyaTrojan.Miner.Win32.12945
SangforTrojan.Win32.Miner.gen
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaRiskWare:Win32/BitMiner.c25bc1e4
K7GWAdware ( 0055fa291 )
Cybereasonmalicious.e2b249
SymantecTrojan Horse
ESET-NOD32a variant of Win64/CoinMiner.QG potentially unwanted
APEXMalicious
AvastFileRepMalware
ClamAVWin.Coinminer.Generic-7151250-0
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderTrojan.GenericKD.36899261
NANO-AntivirusRiskware.Win64.BitMiner.iuhdqs
MicroWorld-eScanTrojan.GenericKD.36899261
TencentWin32.Risk.Bitminer.Pgwl
Ad-AwareTrojan.GenericKD.36899261
SophosGeneric Reputation PUA (PUA)
ComodoApplicUnwnt@#3dke0agues527
BitDefenderThetaGen:NN.ZexaF.34722.VmGfauIHRtgj
VIPRETrojan.Win32.Generic!BT
TrendMicroCoinminer.Win64.TOOLXMR.SMA
McAfee-GW-EditionRDN/Generic PUP.x
FireEyeGeneric.mg.ba77c5ae2b2494e9
EmsisoftTrojan.GenericKD.36899261 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Adware.Gen
AviraTR/Dropper.Gen
eGambitUnsafe.AI_Score_98%
KingsoftWin32.Troj.Generic_a.c.(kcloud)
MicrosoftPUA:Win32/CoinMiner
AegisLabTrojan.Multi.Generic.4!c
GDataTrojan.GenericKD.36899261
AhnLab-V3Unwanted/Win.BitMiner.C4465886
McAfeeRDN/Generic PUP.x
MAXmalware (ai score=81)
VBA32Trojan.CoinMiner
MalwarebytesRiskWare.BitCoinMiner.UPX
PandaTrj/CI.A
RisingMalware.Fakefolder!1.D519 (CLASSIC)
YandexRiskware.Agent!MKCuaInU050
IkarusPUA.CoinMiner
MaxSecureTrojan.Malware.121218.susgen
FortinetRiskware/CoinMiner
AVGFileRepMalware
Paloaltogeneric.ml

How to remove RiskWare.BitCoinMiner.UPX?

RiskWare.BitCoinMiner.UPX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment