Threat Database Trojans Trojan.Coinminer.N

Trojan.Coinminer.N

By CagedTech in Trojans

Threat Scorecard

Popularity Rank: 14,247
Threat Level: 80 % (High)
Infected Computers: 384
First Seen: February 17, 2022
Last Seen: October 21, 2025
OS(es) Affected: Windows

Analysis Report

General information

Family Name: Trojan.Coinminer.N
Signature status: No Signature

Known Samples

MD5: 1831980f7a3a74cbe6711033c27bc49f
SHA1: 4814f1ed246442930b6ef4641402b800052bacdc
SHA256: 6133C580AFEBBB1A027A840C2DD41044D099BC1E0DE1D7B75AD6153F0329929C
File Size: 8.23 MB, 8227498 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File doesn't have security information
  • File has TLS information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
Show More
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Comments This installation was built with Inno Setup.
Company Name www.megacubo.net
File Description Megacubo Setup

File Traits

  • No Version Info
  • x86

Files Modified

File Attributes
c:\users\user\appdata\local\temp\is-m3buq.tmp\4814f1ed246442930b6ef4641402b800052bacdc_0008227498.tmp Generic Write,Read Attributes

Windows API Usage

Category API
Process Manipulation Evasion
  • NtUnmapViewOfSection
Process Shell Execute
  • CreateProcess
User Data Access
  • GetUserObjectInformation

Shell Command Execution

"C:\Users\Kjqlfezl\AppData\Local\Temp\is-M3BUQ.tmp\4814f1ed246442930b6ef4641402b800052bacdc_0008227498.tmp" /SL5="$10250,7951457,57856,c:\users\user\downloads\4814f1ed246442930b6ef4641402b800052bacdc_0008227498"

Trending

Most Viewed

Loading...