Malware

How to remove “Program:Win32/Ymacco.AA57”?

Malware Removal

The Program:Win32/Ymacco.AA57 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Program:Win32/Ymacco.AA57 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Collects information about installed applications
  • Attempts to modify proxy settings

How to determine Program:Win32/Ymacco.AA57?


File Info:

crc32: 4CDF386C
md5: 7e4920746f093051f26f75b1f2cbd435
name: 7E4920746F093051F26F75B1F2CBD435.mlw
sha1: 2d3bfac993085a32abb27ba21c165f5c573f5bdc
sha256: 57806a1fdc9e4bdc3d77ca297f75df5ec41dff08d604944d9634f1f7a675813c
sha512: 7668ab2a86b989ce1a67ae6c685658fcd35c7b533d1f70791eb80b26b8d90b7600b00e73badcc764ef4b85f5c0583a6cae44948868861f43e99221eea66b3485
ssdeep: 6144:QJcQLRj8TWYP7s0FSDaZGtLcw5vV+5oMz9LH8CZD9F:QpF8TF7DztBH8CZD9F
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Program:Win32/Ymacco.AA57 also known as:

Elasticmalicious (high confidence)
DrWebTrojan.Dridex.735
ALYacTrojan.GenericKD.36560596
CylanceUnsafe
SangforRiskware.Win32.Wacapew.C
AlibabaTrojan:Win32/Kryptik.caddbc98
K7GWTrojan ( 0057995f1 )
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/Kryptik.HKCD
AvastWin32:Trojan-gen
BitDefenderTrojan.GenericKD.36560596
MicroWorld-eScanTrojan.GenericKD.36560596
Ad-AwareTrojan.GenericKD.36560596
SophosGeneric PUA CN (PUA)
ComodoMalware@#1xxut38z7t3j6
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionRDN/Dridex
FireEyeGeneric.mg.7e4920746f093051
EmsisoftTrojan.GenericKD.36560596 (B)
WebrootW32.Malware.Gen
MicrosoftProgram:Win32/Ymacco.AA57
ArcabitTrojan.Generic.D22DDED4
AegisLabTrojan.Win32.Generic.4!c
GDataTrojan.GenericKD.36560596
AhnLab-V3Trojan/Win.Dridex.C4386934
McAfeeRDN/Dridex
MAXmalware (ai score=88)
MalwarebytesTrojan.Dridex
RisingTrojan.Kryptik!8.8 (CLOUD)
IkarusTrojan.SuspectCRC
FortinetW32/Generik.BNHPJWL!tr
AVGWin32:Trojan-gen

How to remove Program:Win32/Ymacco.AA57?

Program:Win32/Ymacco.AA57 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment