Home / malwarePDF  

Trojan:Win64/Minxer


First posted on 21 November 2014.
Source: Microsoft

Aliases :

There are no other names known for Trojan:Win64/Minxer.

Explanation :

Threat behavior

Installation

This threat is installed on your PC by a malicious dynamic link library (DLL) file that we detect as Trojan:Win32/Minxer.A.

It is usually installed to the following location:

  • %TEMP% \msupdate71\dwm.exe


Payload

Uses your PC for Bitcoin mining

This threat can use your PC for Bitcoin mining.

This activity can make your PC run slower than usual. It uses your PC processing power as it tries to generate Bitcoins for the malware author.



Analysis by Amir Fouda



Symptoms

The following can indicate that you have this threat on your PC:

  • You have these files:

    %TEMP%\msupdate71\dwm.exe

Last update 21 November 2014

 

TOP