Threat Database Trojans Trojan.Coinliteminer

Trojan.Coinliteminer

By Domesticus in Trojans

Threat Scorecard

Threat Level: 90 % (High)
Infected Computers: 1
First Seen: June 14, 2013
Last Seen: May 28, 2020
OS(es) Affected: Windows

Trojan.Coinliteminer is a Trojan that uses the resources of the compromised PC to mine litecoins. Trojan.Coinliteminer may enter the victimized computer system through spam email messages. While being run, Trojan.Coinliteminer creates the infected files. Trojan.Coinliteminer then creates the registry entry so that it can load automatically whenever the PC user is starts Windows. Trojan.Coinliteminer allows attackers to obtain full remote access and control of the affected computer.

File System Details

Trojan.Coinliteminer may create the following file(s):
# File Name Detections
1. %UserProfile%\Application Data\WindowsFilessc\macro\compile.bat
2. %UserProfile%\Application Data\WindowsFilessc\usft_ext.dll
3. %UserProfile%\Application Data\WindowsFilessc\coinutil.dll
4. %UserProfile%\Application Data\WindowsFilessc\miner.dll
5. %UserProfile%\Application Data\WindowsFilessc\kill.bat
6. %UserProfile%\Application Data\WindowsFilessc\macromedia.exe
7. %UserProfile%\Application Data\WindowsFilessc\shell.exe
8. %UserProfile%\Application Data\WindowsFilessc\phatk.cl
9. %UserProfile%\Start Menu\Programs\Startup\Skype.lnk
10. %UserProfile%\Application Data\WindowsFilessc\phatk.ptx
11. %UserProfile%\Application Data\WindowsFilessc\put.vbs
12. %UserProfile%\Application Data\WindowsFilessc\usft_ext.exe.vbs

Registry Details

Trojan.Coinliteminer may create the following registry entry or registry entries:
HKEY_CURRENT_USER\Software\WinRAR SFX\"%UserProfile%\Application Data\WindowsFilessc" = "%UserProfile%\Application Data\WindowsFilessc"

Trending

Most Viewed

Loading...