Malware

Mal/EncPk-ACO malicious file

Malware Removal

The Mal/EncPk-ACO is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/EncPk-ACO virus can do?

  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Network activity detected but not expressed in API logs
  • Creates a slightly modified copy of itself
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Mal/EncPk-ACO?


File Info:

crc32: FC99A759
md5: 45a49c4514688c29d11564315a6f3533
name: 45A49C4514688C29D11564315A6F3533.mlw
sha1: ae8f8cccfc400fa9b2a96c69078f9888a81839eb
sha256: a7634367af60ff85ead3c7fb10c009a8447a4c557bccfb39772630dc7a8685cc
sha512: 9ac1bbe13946e65539ea98a8cb73e588c2767e2165ec54dd63a0b0a3e19674406888522cdcc7e5e43b26fca1a4844ec93fe5d637c63a98637abc31aa30321b96
ssdeep: 384:dtnwR2FBZMtoLIYi4aYiyYNHsbDAehc3aUe5aCIK4/SbX:dhwRWpjiy4RehMmJIPSj
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Mal/EncPk-ACO also known as:

DrWebTrojan.DownLoad3.28161
MicroWorld-eScanTrojan.Downloader.JQDW
ALYacTrojan.Downloader.JQDW
CylanceUnsafe
ZillyaDownloader.SmallGen.Win32.3
SangforMalware
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanDownloader:Win32/Upatre.cac760d7
K7GWTrojan-Downloader ( 0055e3da1 )
K7AntiVirusTrojan-Downloader ( 0055e3da1 )
TrendMicroTROJ_UPATRE.SMAZ
BaiduWin32.Trojan-Downloader.Small.ck
CyrenW32/S-654ac031!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/TrojanDownloader.Small.AAB
APEXMalicious
AvastWin32:Waski-A [Trj]
ClamAVWin.Downloader.Upatre-5744089-0
GDataTrojan.Downloader.JQDW
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Downloader.JQDW
NANO-AntivirusTrojan.Win32.DownLoad3.dgmrrz
ViRobotTrojan.Win32.Z.Upatre.43064.AG
TencentMalware.Win32.Gencirc.10b07973
Ad-AwareTrojan.Downloader.JQDW
SophosMal/EncPk-ACO
ComodoTrojWare.Win32.TrojanDownloader.Upatre.A@52i1eo
F-SecureTrojan.TR/Crypt.XPACK.Gen7
BitDefenderThetaGen:NN.ZexaF.34110.cuY@amDnDEni
VIPRETrojan-Downloader.Win32.Upatre.a (v)
Invinceaheuristic
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.45a49c4514688c29
EmsisoftTrojan.Downloader.JQDW (B)
SentinelOneDFI – Malicious PE
F-ProtW32/S-654ac031!Eldorado
Endgamemalicious (high confidence)
WebrootW32.Trojan.Gen
AviraTR/Crypt.XPACK.Gen7
Antiy-AVLTrojan/Win32.AGeneric
MicrosoftTrojanDownloader:Win32/Upatre.A
JiangminTrojan/Generic.azrvz
ArcabitTrojan.Downloader.JQDW
AegisLabTrojan.Win32.Generic.lY5V
ZoneAlarmHEUR:Trojan.Win32.Generic
AhnLab-V3Trojan/Win32.Dloader.R87521
Acronissuspicious
McAfeeGenericATG-FKM!45A49C451468
MAXmalware (ai score=84)
VBA32Trojan.Download
MalwarebytesTrojan.Downloader
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_UPATRE.SMAZ
RisingDropper.Generic!8.35E (TFE:dGZlOgPqI1TWNgPuNQ)
IkarusTrojan-Downloader.Win32.Upatre
MaxSecureTrojan.Upatre.Gen
FortinetW32/Waski.A!tr
AVGWin32:Waski-A [Trj]
Paloaltogeneric.ml
Qihoo-360Trojan.Downloader.Win32.Waski.G

How to remove Mal/EncPk-ACO?

Mal/EncPk-ACO removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment