Trojan

Trojan.Win32.Miner.ayitg removal instruction

Malware Removal

The Trojan.Win32.Miner.ayitg is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Miner.ayitg virus can do?

  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Russian
  • Authenticode signature is invalid
  • Created a process from a suspicious location
  • A cryptomining command was executed
  • Anomalous binary characteristics

How to determine Trojan.Win32.Miner.ayitg?


File Info:

name: 803B48CC4819CB52028A.mlw
path: /opt/CAPEv2/storage/binaries/ae2f57a66ca278ac0ab7c3e484ea1e5af3b7ab0faec5c6d2a7e1c650ec8b3863
crc32: 0431A92C
md5: 803b48cc4819cb52028aef60c34ecb34
sha1: 0a33cdaa59e2cfa8e17f640a7c59eac07813d0f1
sha256: ae2f57a66ca278ac0ab7c3e484ea1e5af3b7ab0faec5c6d2a7e1c650ec8b3863
sha512: 7708854692cf468871f55778b5d6ec630b6d3165d18072a1d19288aadaddeaecafaa4796803334e5050b93a69ae7db6a786429fafd2369f9703b99a8f65f011f
ssdeep: 49152:vgwRH5wksAXsvSKt4o/p5h/tIzPHNAsFIaJS3CQmHamFSJBhI5qObKTdVZqOI:vgwRHaksVRtJRzlz31Y1GTlqOI
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T106B523E07FF8B9BAE21021327054B27C33EA9E4CCF1106D3A74AE90635756C5A5B6B47
sha3_384: cc79ed1dfd9f099ff836f51b6837efe41a92aa76a3568f3ebfb762915791f7acb4bcb3b99d36e9d8f222aeb98eb42c75
ep_bytes: 558bec6aff6870c4410068c095410064
timestamp: 2012-12-31 00:38:51

Version Info:

CompanyName: Oleg N. Scherbakov
FileDescription: 7z Setup SFX (x86)
FileVersion: 1.6.0.2712
InternalName: 7ZSfxMod
LegalCopyright: Copyright © 2005-2012 Oleg N. Scherbakov
OriginalFilename: 7ZSfxMod_x86.exe
PrivateBuild: December 30, 2012
ProductName: 7-Zip SFX
ProductVersion: 1.6.0.2712
Translation: 0x0000 0x04b0

Trojan.Win32.Miner.ayitg also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Miner.4!c
DrWebTool.BtcMine.2562
MicroWorld-eScanAdware.GenericKD.37812025
FireEyeAdware.GenericKD.37812025
CAT-QuickHealScript.Trojan.38726
McAfeeArtemis!803B48CC4819
CylanceUnsafe
K7AntiVirusRiskware ( 005622c31 )
AlibabaTrojan:Win32/Miner.3b7c74f5
K7GWRiskware ( 005622c31 )
Cybereasonmalicious.c4819c
CyrenTrojan.AIIF-3
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win64/CoinMiner.PO potentially unwanted
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Coinminer.Generic-7151250-0
KasperskyTrojan.Win32.Miner.ayitg
BitDefenderAdware.GenericKD.37812025
AvastBV:Miner-HA [PUP]
RisingHackTool.XMRMiner!1.C2EC (CLASSIC)
Ad-AwareAdware.GenericKD.37812025
SophosGeneric Reputation PUA (PUA)
TrendMicroCoinminer.BAT.MALXMR.COMP
McAfee-GW-EditionCoinminer.json.g
EmsisoftAdware.GenericKD.37812025 (B)
SentinelOneStatic AI – Malicious PE
GDataWin32.Application.Coinminer.URREZC
JiangminTrojan.Miner.qpz
AviraPUA/CoinMiner.IV
Antiy-AVLTrojan/Generic.ASMalwS.34A14A8
KingsoftWin32.Troj.Undef.(kcloud)
GridinsoftRansom.Win32.Gen.sa
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Generic.C4198781
ALYacAdware.GenericKD.37812025
MAXmalware (ai score=68)
VBA32Trojan.Miner
MalwarebytesRiskWare.BitCoinMiner
TrendMicro-HouseCallCoinminer.BAT.MALXMR.COMP
TencentScript.Risk.Bitminer.Dwsx
YandexRiskware.Agent!xl1aa6I8sQo
FortinetW32/BtcMineNET.2!tr
AVGBV:Miner-HA [PUP]
PandaTrj/CI.A

How to remove Trojan.Win32.Miner.ayitg?

Trojan.Win32.Miner.ayitg removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment