SVCHOST.EXE – Trojan CoinMiner

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

SVCHOST.EXE – Trojan CoinMiner removal

File MD5 Virus Alias
SVCHOST.EXE e57480c40edcd3f824a4d0ff4c24f78a Trojan CoinMiner
SVCHOST.EXE e57480c40edcd3f824a4d0ff4c24f78a Trojan Bitcoin
SVCHOST.EXE e57480c40edcd3f824a4d0ff4c24f78a Trojan Btcmine
SVCHOST.EXE e57480c40edcd3f824a4d0ff4c24f78a Trojan SuspiciousFile
SVCHOST.EXE e57480c40edcd3f824a4d0ff4c24f78a Trojan Artemis
SVCHOST.EXE e57480c40edcd3f824a4d0ff4c24f78a Trojan Generic

SVCHOST.EXE size: 568334 bytes
SVCHOST.EXE hash: E57480C40EDCD3F824A4D0FF4C24F78A

Created files:

%Program Files%\%appdata%\Adobe32\api-example.php
%Program Files%\%appdata%\Adobe32\API.java
%Program Files%\%appdata%\Adobe32\bat.exe
%Program Files%\%appdata%\Adobe32\diablo130302.cl
%Program Files%\%appdata%\Adobe32\diakgcn121016.cl
%Program Files%\%appdata%\Adobe32\example.conf
%Program Files%\%appdata%\Adobe32\invis.vbs
%Program Files%\%appdata%\Adobe32\libcurl.dll
%Program Files%\%appdata%\Adobe32\libeay32.dll
%Program Files%\%appdata%\Adobe32\libidn-11.dll
%Program Files%\%appdata%\Adobe32\librtmp.dll
%Program Files%\%appdata%\Adobe32\libssh2.dll
%Program Files%\%appdata%\Adobe32\libusb-1.0.dll
%Program Files%\%appdata%\Adobe32\miner.php
%Program Files%\%appdata%\Adobe32\phatk121016.cl
%Program Files%\%appdata%\Adobe32\poclbm130302.cl
%Program Files%\%appdata%\Adobe32\scrypt130511.cl
%Program Files%\%appdata%\Adobe32\ssleay32.dll
%Program Files%\%appdata%\Adobe32\svchost.exe
%Program Files%\%appdata%\Adobe32\zlib1.dll

Detected by UnHackMe:

SVCHOST.EXE
Default location: %PROGRAM FILES%\%APPDATA%\ADOBE32\SVCHOST.EXE

Dropper information:
MD5: b7e5dbc47d38545efe115579d698d0d1
File size: 1725221 bytes

Leave a Reply