Trojan

About “Trojan:Win32/CoinMiner.ASC!MTB” infection

Malware Removal

The Trojan:Win32/CoinMiner.ASC!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/CoinMiner.ASC!MTB virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan:Win32/CoinMiner.ASC!MTB?


File Info:

name: D599DF650CC1F595379F.mlw
path: /opt/CAPEv2/storage/binaries/7b42196f1b5527c15cf3d440eb577a00105a89ae7fa901c87d38759ebef56149
crc32: 4D905909
md5: d599df650cc1f595379f72ebc90f8a8a
sha1: 01640cb2c33eea909dfbbfa8eb2c72f07469b9bb
sha256: 7b42196f1b5527c15cf3d440eb577a00105a89ae7fa901c87d38759ebef56149
sha512: 10e5e29579b34bea2020ca6b5a1a3bbbd901c69cd11bf6486f5fd1933bad681fec4e4851c7595370dc234d40bf2905e9466d158e2d1c3c74ec564435c4481ddc
ssdeep: 3072:cZJcIs9pmvv/Yv20l+p7qUdCmlcbHmw1fK6JJrLwSkz14aa:cA1U/Wop7qMCpDmw1y4rL7S4J
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T103041236297D8BBDD2B46136143F4F0D90A0EC9D6BFB359663294807F869E5F005A3E8
sha3_384: b440ae8844edfa36e35645cef6055c50366bb6ffade24aee9d5c37678f3294048c3b2ac55f5047664aaea439d25c4322
ep_bytes: 674e6c63486471466151754d41516979
timestamp: 2019-01-10 13:20:23

Version Info:

0: [No Data]

Trojan:Win32/CoinMiner.ASC!MTB also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Mansabo.4!c
FireEyeGeneric.mg.d599df650cc1f595
SkyhighBehavesLike.Win32.Generic.cm
MalwarebytesMalware.AI.1104703803
SangforTrojan.Win32.Agent.Vmnd
AlibabaMalware:Win32/km_2822c9.None
Cybereasonmalicious.2c33ee
Elasticmalicious (moderate confidence)
APEXMalicious
CynetMalicious (score: 100)
SophosML/PE-A
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.Agent.WIM7Q7
GoogleDetected
Antiy-AVLTrojan/Win32.Wacatac
Kingsoftmalware.kb.a.998
MicrosoftTrojan:Win32/CoinMiner.ASC!MTB
VaristW32/Mansabo.D.gen!Eldorado
McAfeeArtemis!D599DF650CC1
VBA32Trojan.Mansabo
Cylanceunsafe
RisingTrojan.Generic@AI.100 (RDML:IIZKDcj9wHGDqcfJ8idd4g)
IkarusTrojan.Win64.CoinMiner
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Mansabo.D!dam
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:Win32/CoinMiner.ASC!MTB?

Trojan:Win32/CoinMiner.ASC!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment