Trojan

TrojanDownloader.Win64.Miner removal

Malware Removal

The TrojanDownloader.Win64.Miner is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader.Win64.Miner virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Mimics the file times of a Windows system file
  • Exhibits possible ransomware file modification behavior
  • Network activity detected but not expressed in API logs
  • Attempts to create or modify system certificates

How to determine TrojanDownloader.Win64.Miner?


File Info:

crc32: 977B5B33
md5: 8e55bb0faca1ba20b7603325e4ba9209
name: 8E55BB0FACA1BA20B7603325E4BA9209.mlw
sha1: ded369d11caef238102867b759fc1ea6034d1bef
sha256: 421a19e40e5c52bf3a2dbcae5ef747c835ea2d5ae393a058c07c0463eca569a7
sha512: 07294890503a687875368bea6ed337bc6ecee628be37f9c84d4db38dbff7432b12e07f27eacbbbb930714ed6bb6696d59aead44fed109f228d278ce9f3bc5c7e
ssdeep: 98304:FIw+FaIFAfbCn8LS4olSdZEBgwpE12Wp4fMSBK6E7WgQfhl1WqSWKPwDdym5Ncl4:FYUTC8IlSXEBgwpsPbi7JYWCWy5ks/4f
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
FileVersion: 8.8.0.0
CompanyName: ohsoft
Comments: This installation was built with Inno Setup.
ProductName: VirtualDVD
ProductVersion: 8.8.0.0
FileDescription: VirtualDVD Setup
Translation: 0x0000 0x04b0

TrojanDownloader.Win64.Miner also known as:

LionicTrojan.Win64.Miner.a!c
DrWebTrojan.DownLoader32.45315
KasperskyTrojan-Downloader.Win64.Miner.d
NANO-AntivirusTrojan.Win64.Mlw.hbmesf
TencentWin64.Trojan-downloader.Miner.Ecuf
JiangminTrojan.Miner.gsu
GDataWin32.Application.Oort.A
VBA32TrojanDownloader.Win64.Miner
MalwarebytesAdware.DownloadAssistant

How to remove TrojanDownloader.Win64.Miner?

TrojanDownloader.Win64.Miner removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment