Trojan.BitCoinMiner.TskLnk

ThreatDown is now the name of the Malwarebytes line of business products. References to Malwarebytes below reflect the amazing technology used to first identify the threat.

Short bio

Trojan.BitCoinMiner.TskLnk is Malwarebytes’ generic detection name for auto-start entries added by Trojans detected as Trojan.BitCoinMiner.

Type of infection

Trojan.BitCoinMiner.TskLnk is typically created by Trojan.BitCoinMiner. Trojan.BitCoinMiner is Malwarebytes’ generic detection name for crypto-currency miners that run on the affected machine without the users’ consent. Because mining uses a lot of resources threat actors try to use other people’s machines to do their mining for them. This detection means that your machine is being used as such.

Malicious behavior

Crypto-currency miners use a lot of resources to optimize the earning of crypto-coins, so users may experience slow computers.

Aftermath

Besides slowing down your machine, running at peek level for long times may cause damage to your machine and raise electricity bills.

Protection

Malwarebytes blocks Trojan.BitCoinMiner by using real-time protection, but Trojan.BitCoinMiner.TskLnk is, by design, a detection created to clean up traces of an infection.

Home remediation

You can use the Malwarebytes Anti-Malware Nebula console to scan endpoints.

Nebula endpoint tasks menu

Choose the Scan + Quarantine option. Afterwards you can check the Detections page to see which threats were found.

On the Quarantine page you can see which threats were quarantined and restore them if necessary.

Associated threats