Trojan

Trojan-PSW.Win32.Coins.jqy malicious file

Malware Removal

The Trojan-PSW.Win32.Coins.jqy is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-PSW.Win32.Coins.jqy virus can do?

  • Executable code extraction
  • Creates RWX memory
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Romanian
  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Collects information to fingerprint the system

Related domains:

balambada.site

How to determine Trojan-PSW.Win32.Coins.jqy?


File Info:

crc32: FAB99B3B
md5: df36b9c9907da911adbfcdb43ae57485
name: DF36B9C9907DA911ADBFCDB43AE57485.mlw
sha1: d2c7fe4a34008e6ce519df13d5756b83889d4023
sha256: b55e83d8b4f3cc9250c1bd4a9597e2d91498e2ee9574caec63d1f8039b1747ac
sha512: e16a23acc31835f8eb4d2759ce430f7add37670e0db9b803d007e453323ba86852b251923a07aa792ce73e248746224f2be5af5ff543a4ce7890800773660e48
ssdeep: 3072:W21YA602BWQ9opT6wViM+YcdCCnzmpoeu1hKMa9lB0eb7R9b0VGJ6QP7Z:njQ926/MKapBoMFnBpb0E6QjZ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan-PSW.Win32.Coins.jqy also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053e00e1 )
LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Stealer.24403
McAfeeTrojan-FQPW!DF36B9C9907D
CylanceUnsafe
ZillyaTrojan.GenericKD.Win32.194822
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (D)
AlibabaTrojanPSW:Win32/Coins.eec7301d
K7GWTrojan ( 0053e00e1 )
Cybereasonmalicious.9907da
CyrenW32/GandCrab.U.gen!Eldorado
SymantecPacked.Generic.525
ESET-NOD32a variant of Win32/Kryptik.GKNO
APEXMalicious
AvastWin32:PWSX-gen [Trj]
CynetMalicious (score: 100)
KasperskyTrojan-PSW.Win32.Coins.jqy
BitDefenderTrojan.Mint.Jamg.C
NANO-AntivirusTrojan.Win32.Coins.fhoaea
ViRobotTrojan.Win32.GandCrab.217088.A
MicroWorld-eScanTrojan.Mint.Jamg.C
TencentWin32.Trojan-qqpass.Qqrob.Wtdm
Ad-AwareTrojan.Mint.Jamg.C
SophosMal/Generic-R + Mal/GandCrab-B
ComodoTrojWare.Win32.TrojanSpy.Ursnif.EM@7vyz23
BitDefenderThetaGen:NN.ZexaF.34790.nuW@aGqe0boG
McAfee-GW-EditionBehavesLike.Win32.Emotet.dc
FireEyeGeneric.mg.df36b9c9907da911
EmsisoftTrojan.Mint.Jamg.C (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.PSW.Coins.bgw
AviraHEUR/AGEN.1106537
Antiy-AVLTrojan/Generic.ASMalwS.27F4005
MicrosoftTrojan:Win32/Tiggre!rfn
ArcabitTrojan.Mint.Jamg.C
ZoneAlarmTrojan-PSW.Win32.Coins.jqy
GDataWin32.Trojan-Ransom.GandCrab.N
AhnLab-V3Trojan/Win32.Gandcrab.C2696332
Acronissuspicious
VBA32BScope.Trojan.Vigorf
MAXmalware (ai score=91)
MalwarebytesMalware.AI.1670945585
PandaTrj/Genetic.gen
RisingTrojan.Generic@ML.100 (RDML:aDEglfrAFoVVeMG9W1wh9Q)
IkarusTrojan.Win32.Danabot
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GKMH!tr
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/TrojanSpy.Coins.HwoCEpsA

How to remove Trojan-PSW.Win32.Coins.jqy?

Trojan-PSW.Win32.Coins.jqy removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment