Trojan

About “Trojan-PSW.Win32.Coins.edb” infection

Malware Removal

The Trojan-PSW.Win32.Coins.edb is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-PSW.Win32.Coins.edb virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Collects information to fingerprint the system

Related domains:

z.whorecord.xyz
a.tomx.xyz
blackblackhack.com

How to determine Trojan-PSW.Win32.Coins.edb?


File Info:

crc32: 1423C6B4
md5: 77e84161337815755cf2e94bc662850e
name: 77E84161337815755CF2E94BC662850E.mlw
sha1: 2f5a680e6034f0dc9bc4a88d726689e34d70bd32
sha256: 96428ee5c634816b1360ff9faa71e15534355b28f278547d94945cbca31e6127
sha512: 9f65bb0b574239e233276b153db04138f841a167ba941980779f536543a4c9ce69533565704a2ce7a7400e3289823c96ae9aa1216d252ce0908e4ee862613b65
ssdeep: 12288:XhiVb11Y8a1b7giyUYlsXEqkhwUxPMwVl:X61I1wipeqkVxPMU
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Copyright xa9 2016 All rights reserved. ThunderSoft
InternalName: Honeycomb
FileVersion: 6.2.6.760
CompanyName: ThunderSoft
PrivateBuild: 6.2.6.760
LegalTrademarks: Copyright xa9 2016 All rights reserved. ThunderSoft
Comments: Respond Transcript Naval Breakpoints Happened
ProductName: Honeycomb
ProductVersion: 6.2.6.760
FileDescription: Respond Transcript Naval Breakpoints Happened
OriginalFilename: Honeycomb.exe
Translation: 0x0409 0x04b0

Trojan-PSW.Win32.Coins.edb also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053ec241 )
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Stealer.23950
CynetMalicious (score: 100)
ALYacGen:Variant.Ransom.Scarab.43
CylanceUnsafe
ZillyaTrojan.Coins.Win32.531
AlibabaTrojanPSW:Win32/Coins.a873fe92
K7GWTrojan ( 0053ec241 )
Cybereasonmalicious.133781
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GYCX
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-PSW.Win32.Coins.edb
BitDefenderGen:Variant.Ransom.Scarab.43
NANO-AntivirusTrojan.Win32.Coins.ffcoxx
MicroWorld-eScanGen:Variant.Ransom.Scarab.43
TencentMalware.Win32.Gencirc.114d4ad2
Ad-AwareGen:Variant.Ransom.Scarab.43
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34684.zmKfaO2edafi
VIPREPacker.NSAnti.Gen (v)
McAfee-GW-EditionBehavesLike.Win32.Dropper.gc
FireEyeGeneric.mg.77e8416133781575
EmsisoftGen:Variant.Ransom.Scarab.43 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.PSW.Coins.abh
AviraHEUR/AGEN.1121150
MicrosoftTrojan:Win32/Occamy.C
ZoneAlarmTrojan-PSW.Win32.Coins.edb
GDataGen:Variant.Ransom.Scarab.43
AhnLab-V3Malware/Win32.Generic.C2604648
McAfeeGeneric.dyg
MAXmalware (ai score=100)
VBA32BScope.TrojanPSW.Fareit
PandaTrj/CI.A
RisingStealer.Delf!8.415 (C64:YzY0Om4X0SGiUboM)
YandexTrojan.GenAsa!oRBw1WR27Rg
IkarusTrojan.Win32.Krypt
MaxSecureTrojan.Malware.22145427.susgen
FortinetW32/Coins.EBP!tr.pws
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan-PSW.Win32.Coins.edb?

Trojan-PSW.Win32.Coins.edb removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment