BitCoinMiner

Category: Adware and PUAsProtection available since:25 Aug 2016 05:31:44 (GMT)
Type: Unspecified PUALast Updated:30 Aug 2019 06:41:15 (GMT)

Download Download our free Virus Removal Tool - Find and remove threats your antivirus missed

Examples of BitCoinMiner include:

Example 1

File Information

Size
998K
SHA-1
057bcb97eabeeed38d87e335c7371230593d6b0b
MD5
e074acd15deb473c083c17d3fb336e08
CRC-32
108b494d
File type
Windows executable
First seen
2018-01-04

Runtime Analysis

Registry Keys Created
  • HKLM\SOFTWARE\Microsoft\ESENT\Process\sample\DEBUG
    Trace Level
DNS Requests
  • hh.minexmr.cn

Example 2

File Information

Size
1.7M
SHA-1
49888c063d4a722ac7d926138b1fd2e5b4fb4a00
MD5
eaaed221380193613ef07f7a8fef91b2
CRC-32
d88c3188
File type
Windows executable
First seen
2017-11-22

Runtime Analysis

Dropped Files
  • C:\winupdate.exe
    Size
    1.2M
    SHA-1
    930d9884662046299d6b7c6d1b4c26b5d60b3157
    MD5
    8df764b194bbefbbe377224519698a3f
    CRC-32
    c695f35a
    File type
    Windows executable
    First seen
    2017-11-17
  • c:\Documents and Settings\test user\Start Menu\Programs\Startup\sample.lnk
  • C:\yam-xmr.cfg
    Size
    413
    SHA-1
    ca62459d59a84b14c43dc5b8324f54bd326a2565
    MD5
    bee8bd2647c455d9209fb1ff435a03aa
    CRC-32
    6182e4b8
    File type
    ASCII text / 8-bit Unicode Transformation Format
    First seen
    2017-11-22
Processes Created
  • c:\windows\system32\cmd.exe

Example 3

File Information

Size
1.1M
SHA-1
a41ea19f1975207d85c00f9281eadde1da13f636
MD5
4d80e6c22f8d39966e85b4aab4996e85
CRC-32
34b45499
File type
Windows executable
First seen
2017-11-08

download Try Sophos products for free
Download now