Trojan

About “Trojan.Win32.CoinMiner.anfu” infection

Malware Removal

The Trojan.Win32.CoinMiner.anfu is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.CoinMiner.anfu virus can do?

  • Anomalous binary characteristics

How to determine Trojan.Win32.CoinMiner.anfu?


File Info:

crc32: A0FEF84B
md5: c95e95ec4fa5e795dcebb470b28a72f4
name: C95E95EC4FA5E795DCEBB470B28A72F4.mlw
sha1: 3c161a7b4aa85be8a622f521a844e7ddb6812889
sha256: c903651cf73d7eb6a98e6d543a18d4b08a89ad9f1a678e8efd96ab37ff788ed2
sha512: 3ecc075375da428f4cff078c8dc1ed500ebd9f2398aa32161db844ce542bd4dbca1227246199f1da6703b51ecd5f9d95c0a6ea4606293612586ddd3b7702a44c
ssdeep: 196608:GbxGyDnJtc8cVNSOPmOxNOc8THsqyeZ0Peqm82aCJNCXlKhBcUqV:WMyDn3qVUOxmMqyO+eZ8kJ5bqV
type: PE32+ executable (GUI) x86-64, for MS Windows

Version Info:

Translation: 0x0809 0x04b0

Trojan.Win32.CoinMiner.anfu also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.36471296
FireEyeGeneric.mg.c95e95ec4fa5e795
CAT-QuickHealTrojan.CoinMiner
ALYacTrojan.GenericKD.36471296
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforSuspicious.Win32.LUA.AutoItLargeFile
K7AntiVirusTrojan ( 004b8cb71 )
BitDefenderTrojan.GenericKD.36477900
K7GWTrojan ( 004b8cb71 )
Cybereasonmalicious.c4fa5e
CyrenW64/Trojan.YERF-5023
ESET-NOD32a variant of Win32/Injector.Autoit.ANX
APEXMalicious
AvastAutoIt:Injector-W [Trj]
KasperskyTrojan.Win32.CoinMiner.anfu
AlibabaTrojan:Win32/Starter.ali2000005
NANO-AntivirusTrojan.Script.AutoIt.bfxbei
ViRobotTrojan.Win32.Z.Injector.8346631
Ad-AwareTrojan.GenericKD.36477900
EmsisoftTrojan.GenericKD.36477900 (B)
ComodoMalware@#2rtj0m00zaik6
F-SecureHeuristic.HEUR/AGEN.1100014
DrWebTrojan.Inject4.7937
TrendMicroCoinminer.Win64.MALREP.THCOHBA
McAfee-GW-EditionBehavesLike.Win64.TrojanAitInject.wc
SophosMal/Generic-S
IkarusTrojan.Win32.Injector
AviraHEUR/AGEN.1100014
MAXmalware (ai score=81)
MicrosoftTrojan:Win32/Ymacco.AAC9
GridinsoftTrojan.Win64.CoinMiner.oa
ArcabitTrojan.Generic.D22C8200
AhnLab-V3Malware/Win64.Generic.C4362897
ZoneAlarmTrojan.Win32.CoinMiner.anfu
GDataTrojan.GenericKD.36477900
CynetMalicious (score: 100)
McAfeeArtemis!C95E95EC4FA5
MalwarebytesTrojan.BitCoinMiner
PandaTrj/CI.A
TrendMicro-HouseCallCoinminer.Win64.MALREP.THCOHBA
TencentWin32.Trojan.Injector.Syru
FortinetW32/CoinMiner.ANFU!tr
AVGAutoIt:Injector-W [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Win64/Worm.AutoIt.HgEASP0A

How to remove Trojan.Win32.CoinMiner.anfu?

Trojan.Win32.CoinMiner.anfu removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment