Trojan

Should I remove “Trojan:Win32/CoinMiner.QG!bit”?

Malware Removal

The Trojan:Win32/CoinMiner.QG!bit is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/CoinMiner.QG!bit virus can do?

  • A process attempted to delay the analysis task.
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests

Related domains:

fup.host

How to determine Trojan:Win32/CoinMiner.QG!bit?


File Info:

crc32: C56AC44F
md5: b329aa79133c691572b5211a7f3eff01
name: B329AA79133C691572B5211A7F3EFF01.mlw
sha1: 61d8b68e424e78b0c9c8ac0186790a4a6869f6bf
sha256: 394b70c7a1e5e7821011bbcb12349ca355acd5b80d77872046fd82b210ac764b
sha512: 0d4dfd5861e8bb9528732d175d584a2c6394ba3c86412664ad12dd3df450ff8599ef4a4808c7b2f833c00efd351864f9732c78d0ea1a5661c664facec0923a9b
ssdeep: 6144:BmBTzxY+vacbW57nndFkX/SjAOlRb19k4+i:Bml1Y+vNbWFndrjRs4+i
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: SV Corporation 2018
InternalName: playerinstall.exe
FileVersion: 10.0.10.0
CompanyName: SV Corporation
ProductName: Player installer
ProductVersion: 10.0.10.0
FileDescription: Installer and Uninstaller
OriginalFilename: playerinstall.exe
Translation: 0x0409 0x04b0

Trojan:Win32/CoinMiner.QG!bit also known as:

K7AntiVirusTrojan ( 005272041 )
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacGen:Variant.Doina.7770
CylanceUnsafe
ZillyaTrojan.CoinMiner.Win32.7759
SangforRootkit.Win32.Agent.gen
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/CoinMiner.a5066b3d
K7GWTrojan ( 005272041 )
Cybereasonmalicious.9133c6
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/CoinMiner.BDS
APEXMalicious
AvastWin32:Rootkit-gen [Rtk]
KasperskyUDS:Trojan.Win32.Agent
BitDefenderGen:Variant.Doina.7770
NANO-AntivirusTrojan.Win32.HPDefender.eyffsn
MicroWorld-eScanGen:Variant.Doina.7770
TencentMalware.Win32.Gencirc.114ce490
Ad-AwareGen:Variant.Doina.7770
SophosMal/Generic-S
ComodoMalware@#3jwp074qbx6xz
BitDefenderThetaGen:NN.ZexaF.34294.sC0@aGzdVJki
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0CGN21
McAfee-GW-EditionBehavesLike.Win32.Dropper.fh
FireEyeGeneric.mg.b329aa79133c6915
EmsisoftGen:Variant.Doina.7770 (B)
JiangminTrojan.Generic.chjnd
WebrootW32.Malware.Gen
AviraTR/Downloader.Gen
eGambitUnsafe.AI_Score_87%
Antiy-AVLTrojan/Generic.ASMalwS.247E79A
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/CoinMiner.QG!bit
ArcabitTrojan.Doina.D1E5A
SUPERAntiSpywareHack.Tool/Gen-BitCoinMiner
GDataGen:Variant.Doina.7770
AhnLab-V3Trojan/Win.CoinMiner.R449509
McAfeeRDN/Generic PUP.x
MAXmalware (ai score=100)
VBA32BScope.Trojan.CoinMiner
MalwarebytesTrojan.Downloader
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0CGN21
RisingTrojan.Generic@ML.90 (RDMK:zO3OPrHTV57hM/7CPQ/mQg)
IkarusTrojan.Win32.CoinMiner
MaxSecureTrojan.Malware.7176781.susgen
FortinetW32/CoinMiner.BDS!tr
AVGWin32:Rootkit-gen [Rtk]
Paloaltogeneric.ml

How to remove Trojan:Win32/CoinMiner.QG!bit?

Trojan:Win32/CoinMiner.QG!bit removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment