Trojan

MemScan:Trojan.Clicker.MTP removal tips

Malware Removal

The MemScan:Trojan.Clicker.MTP is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MemScan:Trojan.Clicker.MTP virus can do?

  • Performs HTTP requests potentially not found in PCAP.
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Russian
  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Touches a file containing cookies, possibly for information gathering
  • Anomalous binary characteristics

How to determine MemScan:Trojan.Clicker.MTP?


File Info:

name: 0405BD6B711E1797EA0C.mlw
path: /opt/CAPEv2/storage/binaries/3984d6b68fbeedee74c0fd2537de7b77e17600001e3832c2a7101a3b02106fae
crc32: 27A33EE2
md5: 0405bd6b711e1797ea0c9f7ab1afb43c
sha1: 601124deafa6b48ecffe6951ce468475dc63a80e
sha256: 3984d6b68fbeedee74c0fd2537de7b77e17600001e3832c2a7101a3b02106fae
sha512: 7def9d2bbc4c317455da102fd2bc9890b37dcd70bee821a3da3969061cc7f4cbbf53fc701151bb1bb4af5863ec326d0f2cdf6644263f2ee37bca9213fd640d35
ssdeep: 12288:MNefBEBY9Z8/9hdH/ymibC/UheSImp3ZIuV8Qzx:MN6EBW8lD/ymi2sheSh3BV8
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1EFE46B23B6F08037C1331AB45DBFE6B2A43E7E901A24458777E45E4C1F786A1791A39B
sha3_384: 2b50ad72993b7c2f26f4cecf4f514a2955fb0fe4f4fb083de024d6ebfc6459efddb8ae0cc0aa2f8401246719ffbcf4e1
ep_bytes: 558bec6aff68783c4000684082400064
timestamp: 2008-05-30 08:43:42

Version Info:

0: [No Data]

MemScan:Trojan.Clicker.MTP also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanMemScan:Trojan.Clicker.MTP
FireEyeGeneric.mg.0405bd6b711e1797
ALYacMemScan:Trojan.Clicker.MTP
SangforSuspicious.Win32.Save.ins
Cybereasonmalicious.b711e1
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Agent.UJT
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Witch.cjz
BitDefenderMemScan:Trojan.Clicker.MTP
NANO-AntivirusTrojan.Win32.Agent.blrfrg
AvastWin32:Agent-AADI [Trj]
EmsisoftMemScan:Trojan.Clicker.MTP (B)
F-SecureTrojan.TR/Dropper.Gen2
DrWebTrojan.Click.38733
VIPREMemScan:Trojan.Clicker.MTP
TrendMicroTROJ_SPNR.30FD13
McAfee-GW-EditionBehavesLike.Win32.Infected.jh
Trapminemalicious.high.ml.score
SophosMal/Generic-S
SentinelOneStatic AI – Suspicious PE
GDataMemScan:Trojan.Clicker.MTP
WebrootW32.Malware.Gen
AviraTR/Dropper.Gen2
Antiy-AVLTrojan[Clicker]/Win32.Agent
XcitiumSuspicious@#2azf7g4p0ltzs
ArcabitTrojan.Clicker.MTP
ZoneAlarmTrojan.Win32.Witch.cjz
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
McAfeeArtemis!0405BD6B711E
MAXmalware (ai score=83)
VBA32TrojanClicker.Agent
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_SPNR.30FD13
RisingTrojan.Bumat!8.710 (TFE:5:Yks4aJc43OK)
YandexTrojan.GenAsa!W1l9BXmJIeE
IkarusTrojan.Win32.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Malware_fam.NB
BitDefenderThetaAI:Packer.85B21F8D1F
AVGWin32:Agent-AADI [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_60% (D)

How to remove MemScan:Trojan.Clicker.MTP?

MemScan:Trojan.Clicker.MTP removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment