SCVHOST.EXE – Trojan CoinMiner

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SCVHOST.EXE – Trojan CoinMiner removal

FileMD5Virus Alias
SCVHOST.EXE aa59b15f83b24d0c709cde556fb4f842 Trojan CoinMiner
SCVHOST.EXE aa59b15f83b24d0c709cde556fb4f842 Trojan Bitcoin
SCVHOST.EXE aa59b15f83b24d0c709cde556fb4f842 Trojan WS.Reputation
SCVHOST.EXE aa59b15f83b24d0c709cde556fb4f842 Trojan SuspiciousFile
SCVHOST.EXE aa59b15f83b24d0c709cde556fb4f842 Worm AMN
SCVHOST.EXE aa59b15f83b24d0c709cde556fb4f842 Trojan Siggen

SCVHOST.EXE size: 460800 bytes
SCVHOST.EXE hash: AA59B15F83B24D0C709CDE556FB4F842

Created files:

%Program Files%\%appdata%\aloj\chp.exe
%Program Files%\%appdata%\aloj\diablo121016.cl
%Program Files%\%appdata%\aloj\diakgcn121016.cl
%Program Files%\%appdata%\aloj\libblkmaker-0.1-0.dll
%Program Files%\%appdata%\aloj\libblkmaker_jansson-0.1-0.dll
%Program Files%\%appdata%\aloj\libcurl-4.dll
%Program Files%\%appdata%\aloj\libjansson-4.dll
%Program Files%\%appdata%\aloj\libusb-1.0.dll
%Program Files%\%appdata%\aloj\miner.php
%Program Files%\%appdata%\aloj\pdcurses.dll
%Program Files%\%appdata%\aloj\phatk121016.cl
%Program Files%\%appdata%\aloj\poclbm121016.cl
%Program Files%\%appdata%\aloj\pthreadGC2.dll
%Program Files%\%appdata%\aloj\scrypt121016.cl
%Program Files%\%appdata%\aloj\scvhost.exe
%Program Files%\%appdata%\aloj\zlib1.dll

Detected by UnHackMe:

SCVHOST.EXE
Default location: %PROGRAM FILES%\%APPDATA%\ALOJ\SCVHOST.EXE

Dropper information:
MD5: 0f17cf222a7dbd7033095a7d4a622e76
File size: 600382 bytes

Leave a Reply