Home Malware Programs Trojans Program:Win32/BitCoinMiner.A

Program:Win32/BitCoinMiner.A

Posted: August 1, 2011

Threat Metric

Ranking: 2,649
Threat Level: 8/10
Infected PCs: 221,966
First Seen: August 1, 2011
Last Seen: October 16, 2023
OS(es) Affected: Windows

The Win32/BitCoinMiner.A program is classified by security experts as malware because it is installed by hackers on already compromised systems as means to earn revenue. The Win32/BitCoinMiner.A program is used by hackers to hijack system resources of infected machines and facilitate calculations with the Bitcoin online currency. The Win32/BitCoinMiner.A malware is programmed to collect, process and send Bitcoin blocks to remote servers and users may experience slower PC performance and poor Internet bandwidth. The Win32/BitCoinMiner.A program is known to be employed by malware like the NGRBot and trojan droppers like BCMiner, PWS and Golroted. Moreover, there are browser hijackers, freeware and adware that may download and install the Win32/BitCoinMiner.A program to earn additional revenue. Users are often oblivious to that because they don't read the 'Terms of Service' of freeware packages and carelessly install impressive shopping extensions and browser assistants. Most programs associated with Win32/BitCoinMiner.A may add a key in the Windows Registry to allow Win32/BitCoinMiner.A to start with Windows and ensure its operations while your computer is turned on to maximize its productivity. Users that detect Win32/BitCoinMiner.A on their PC might want to install a renowned anti-malware utility and clean their system.

Aliases

Generic35.XWQ [AVG]Hra.BS!tr [Fortinet]Troj/Sefnit-BM [Sophos]BehavesLike.Win32.Spirit.ch [McAfee-GW-Edition]Trojan.Win32.Sefnit.vgz [Kaspersky]Sefnit.ag [McAfee]Generic35.LOU [AVG]Hra.BT!tr [Fortinet]Trojan.Win32.Sefnit [Ikarus]Generic Malware [Panda]RDN/Generic PUP.x!cmx [McAfee]Trojan/Win32.Sefnit [AhnLab-V3]Trojan:Win32/Sefnit.AX [Microsoft]Trojan/Win32.SGeneric [Antiy-AVL]BehavesLike.Win32.PWSZbot.ch [McAfee-GW-Edition]
More aliases (149)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



c:\program files\pcdapp\starthelp.exe File name: starthelp.exe
Size: 97.23 KB (97232 bytes)
MD5: 4d4cb7c3875ae67595ce8b6981c5900d
Detection count: 12,516
File type: Executable File
Mime Type: unknown/exe
Path: c:\program files\pcdapp\starthelp.exe
Group: Malware file
Last Updated: March 9, 2023
C:\Program Files\PCDApp\StartHelp.exe File name: StartHelp.exe
Size: 65.84 KB (65846 bytes)
MD5: 45efef451332b4bf6224db6f13c0e9c5
Detection count: 9,256
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files\PCDApp
Group: Malware file
Last Updated: June 23, 2020
C:\Users\<username>\AppData\Roaming\Steam\Reversed\steam.exe File name: steam.exe
Size: 1.46 MB (1469540 bytes)
MD5: 73e2443d9bd7f18e400b06367cff378b
Detection count: 7,387
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Roaming\Steam\Reversed\steam.exe
Group: Malware file
Last Updated: June 11, 2023
C:\CCE_Quarantine\{29BA2F1E-6BC3-42D6-A742-F84F67D4E1EB} File name: {29BA2F1E-6BC3-42D6-A742-F84F67D4E1EB}
Size: 1.46 MB (1469569 bytes)
MD5: 791c4bce8f4dae1857bd260f2b41bcf8
Detection count: 6,933
Path: C:\CCE_Quarantine\{29BA2F1E-6BC3-42D6-A742-F84F67D4E1EB}
Group: Malware file
Last Updated: March 12, 2022
C:\Windows\Temp\dgen.exe File name: dgen.exe
Size: 173.07 KB (173070 bytes)
MD5: ac91d621d70bcd273f0d0a9e07edb00f
Detection count: 6,820
File type: Executable File
Mime Type: unknown/exe
Path: C:\Windows\Temp\dgen.exe
Group: Malware file
Last Updated: September 11, 2022
C:\Program Files\PCDApp\StartHelp.exe File name: StartHelp.exe
Size: 97.11 KB (97113 bytes)
MD5: abb570080fdf289720e313ef0230bba4
Detection count: 4,253
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files\PCDApp\StartHelp.exe
Group: Malware file
Last Updated: June 16, 2022
c:\program files\pdapp\starthelp.exe File name: starthelp.exe
Size: 438.45 KB (438454 bytes)
MD5: 51fca18b3facc0e0aa18dce32b7f46db
Detection count: 3,499
File type: Executable File
Mime Type: unknown/exe
Path: c:\program files\pdapp\starthelp.exe
Group: Malware file
Last Updated: December 15, 2021
%SystemDrive%\Program Files\PCDApp\StartHelp.exe File name: StartHelp.exe
Size: 97.11 KB (97112 bytes)
MD5: af5a4067069c06a110415f9c03b4aadf
Detection count: 1,321
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Program Files\PCDApp
Group: Malware file
Last Updated: June 20, 2020
C:\back_JM\Archivos de programa\PCDApp\StartHelp.exe File name: StartHelp.exe
Size: 77.7 KB (77705 bytes)
MD5: 655498502eed30275e12c78714e294ea
Detection count: 1,016
File type: Executable File
Mime Type: unknown/exe
Path: C:\back_JM\Archivos de programa\PCDApp\StartHelp.exe
Group: Malware file
Last Updated: October 21, 2022
%PROGRAMFILES%\PCDApp\StartHelp.exe File name: StartHelp.exe
Size: 97.24 KB (97249 bytes)
MD5: b06a4e02591a2c5de6a024a7c91d6b1c
Detection count: 988
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\PCDApp
Group: Malware file
Last Updated: July 22, 2020
%PROGRAMFILES%\PDApp\pcgen.exe File name: pcgen.exe
Size: 599.56 KB (599566 bytes)
MD5: c3a2cefdaad0369406d9d319cd6b89ef
Detection count: 649
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\PDApp
Group: Malware file
Last Updated: March 18, 2020
%PROGRAMFILES%\PCDApp\StartHelp.exe File name: StartHelp.exe
Size: 97.24 KB (97248 bytes)
MD5: 57184dca1dae872b27cbc95a425a99e1
Detection count: 405
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\PCDApp
Group: Malware file
Last Updated: April 14, 2020
%PROGRAMFILES%\PCDApp\StartHelp.exe File name: StartHelp.exe
Size: 97.24 KB (97249 bytes)
MD5: e80a6d9a0144952d2dc950c649463dad
Detection count: 98
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\PCDApp
Group: Malware file
Last Updated: July 26, 2020
%PROGRAMFILES%\PCDApp\DGEN.EXE File name: DGEN.EXE
Size: 199.16 KB (199168 bytes)
MD5: 9f4095960ae83aa945bd152f694761a1
Detection count: 62
File type: Executable File
Mime Type: unknown/EXE
Path: %PROGRAMFILES%\PCDApp
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES%\PCDApp\StartHelp.exe File name: StartHelp.exe
Size: 33.28 KB (33280 bytes)
MD5: 3968be78f32f898f868268dbdc480c1b
Detection count: 61
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\PCDApp
Group: Malware file
Last Updated: June 13, 2014
C:\Program Files\PCDApp\dgen.exe File name: dgen.exe
Size: 1.21 MB (1210445 bytes)
MD5: c68a3db00d255474c0e2052725642bd6
Detection count: 54
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files\PCDApp\dgen.exe
Group: Malware file
Last Updated: September 11, 2022
%PROGRAMFILES%\PCDApp\StartHelp.exe File name: StartHelp.exe
Size: 274.9 KB (274904 bytes)
MD5: 0660c7afb7a2bf866298fa57c77bc0a5
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\PCDApp
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES%\PCDApp\StartHelp.exe File name: StartHelp.exe
Size: 170.73 KB (170735 bytes)
MD5: 41a09356193c0e6ede1dd389fc0ef05e
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\PCDApp
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES%\PCDApp\StartHelp.exe File name: StartHelp.exe
Size: 170.96 KB (170960 bytes)
MD5: 2c9a76a3591f7e7e86070dd07f6a1f73
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\PCDApp
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES%\PCDApp\dgen.exe File name: dgen.exe
Size: 2.78 MB (2786291 bytes)
MD5: c66941e098f8005f318ab557d698f9d1
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\PCDApp
Group: Malware file
Last Updated: May 15, 2020
%PROGRAMFILES%\PCDApp\StartHelp.exe File name: StartHelp.exe
Size: 170.7 KB (170700 bytes)
MD5: c59c626848101c09e94dec5a79eaa19f
Detection count: 6
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\PCDApp
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES%\PCDApp\StartHelp.exe File name: StartHelp.exe
Size: 175.05 KB (175056 bytes)
MD5: 2f618bd62faf8eb9a4d656072c36472b
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\PCDApp
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES%\PCDApp\StartHelp.exe File name: StartHelp.exe
Size: 170.96 KB (170960 bytes)
MD5: ed68300114156aba74d6b936f493a78a
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\PCDApp
Group: Malware file
Last Updated: June 13, 2014
%SystemDrive%\Program Files\PCDApp\StartHelp.exe File name: StartHelp.exe
Size: 175.05 KB (175056 bytes)
MD5: 84642ef5dab1c7d8e0efa9c0589d5215
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Program Files\PCDApp
Group: Malware file
Last Updated: June 13, 2014

More files

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{RegistryKeys}SOFTWARE\PCDataAppSOFTWARE\Wow6432Node\PCDataAppHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}PCData App

Additional Information

The following directories were created:
%PROGRAMFILES%\PCDApp%PROGRAMFILES%\PCData%PROGRAMFILES%\PDApp%PROGRAMFILES(x86)%\PCData%PROGRAMFILES(x86)%\PDApp
Loading...