Malware

Win64/CoinMiner.CF potentially unwanted removal tips

Malware Removal

The Win64/CoinMiner.CF potentially unwanted is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win64/CoinMiner.CF potentially unwanted virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Win64/CoinMiner.CF potentially unwanted?


File Info:

name: F402965E444184CCD3C6.mlw
path: /opt/CAPEv2/storage/binaries/fc182f19497b94f8b44fd6a8cda74ecd7499f8ab450e330ed6a20868bdc5fd3e
crc32: A7BFC2D0
md5: f402965e444184ccd3c66ed1f043d14d
sha1: d335b808f57c7e74cc702725e956bdf9289983da
sha256: fc182f19497b94f8b44fd6a8cda74ecd7499f8ab450e330ed6a20868bdc5fd3e
sha512: 9bb82014e189c8209785b295f06ae42365fe60a35cbbe9a69a03457b810264a9769ca1fa613ae4050667d94c191216ed2f2f7b9d205ef139e60ab4bbbcc3c251
ssdeep: 24576:M9ipIkykKgu8H7ieKSmWYUMkL/EFQu4nfl0+QBssJQQY:M9ipFyX2/ZYUMWEWu4nfl01v
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T1C9356BAEF2C19EB4F0E1ECF4236E4D44F63330187739D466444A15122A161BF97EADAB
sha3_384: faa5cafb0c21c2af98a611a8aff7652a882420fd0bc9ac58e34097f8881f32e63fed5f43be618e6678abec9d1868e11f
ep_bytes: 4883ec28e82f0500004883c428e976fe
timestamp: 2017-04-06 13:53:48

Version Info:

0: [No Data]

Win64/CoinMiner.CF potentially unwanted also known as:

FireEyeGeneric.mg.f402965e444184cc
McAfeeArtemis!F402965E4441
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusAdware ( 005234dd1 )
AlibabaRiskWare:Win64/Miners.0cb7e43a
K7GWAdware ( 005234dd1 )
SymantecPUA.Gen.2
ESET-NOD32a variant of Win64/CoinMiner.CF potentially unwanted
APEXMalicious
Paloaltogeneric.ml
Kasperskynot-a-virus:HEUR:RiskTool.Win32.BitMiner.gen
McAfee-GW-EditionBehavesLike.Win64.CoinMiner.th
SophosXMR-Stak Miner (PUA)
SentinelOneStatic AI – Malicious PE
JiangminRiskTool.BitMiner.cnyk
GridinsoftRansom.Win64.Gen.sa
RisingHackTool.CoinMiner!1.BEAB (CLOUD)
IkarusPUA.CoinMiner
PandaTrj/CI.A

How to remove Win64/CoinMiner.CF potentially unwanted?

Win64/CoinMiner.CF potentially unwanted removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment