Risk

Risktool.Flystudio.16884 removal guide

Malware Removal

The Risktool.Flystudio.16884 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Risktool.Flystudio.16884 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Risktool.Flystudio.16884?


File Info:

crc32: 7A3FC8F8
md5: 9c426faf4f9297f35d7c2d57a6fe9dc3
name: cc.exe
sha1: 97305b98355afdc3467d937ed0a9039834e547a3
sha256: b45b6b56bb711e736d934ab89571acc9431455a9a789c5901bc9bc4028a3ceb9
sha512: a0bf8b82819f7293f8b6d69bcde58139a5c64a711cda591d71933e764637f36933c400c1cb7d2f4634b2f6e1483aebecaae420ff476aaf8358ec61932a4f9bca
ssdeep: 49152:T7SllaGoxpkZF7fx3GYb6z++s8KuqGaX0ToIBAUZLYb:HkZxfx3pb6pJBAUZLo
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: CCx67e5x51bbx7ed3
FileVersion: 1.2.0.4
CompanyName: CCx67e5x51bbx7ed3
Comments: CCx67e5x51bbx7ed3
ProductName: CCx67e5x51bbx7ed3
ProductVersion: 1.2.0.4
FileDescription: CCx67e5x51bbx7ed3
Translation: 0x0804 0x04b0

Risktool.Flystudio.16884 also known as:

BkavW32.AIDetectVM.malware
MicroWorld-eScanTrojan.GenericKD.33564222
FireEyeGeneric.mg.9c426faf4f9297f3
CAT-QuickHealRisktool.Flystudio.16884
Qihoo-360Generic/HEUR/QVM07.1.2D09.Malware.Gen
ALYacTrojan.GenericKD.33564222
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Malicious.4!c
K7AntiVirusTrojan ( 005246d51 )
BitDefenderTrojan.GenericKD.33564222
K7GWTrojan ( 005246d51 )
CrowdStrikewin/malicious_confidence_80% (W)
Invinceaheuristic
BitDefenderThetaGen:NN.ZexaF.34104.ms0@amu3qNbb
F-ProtW32/Trojan.CLL.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
Paloaltogeneric.ml
GDataTrojan.GenericKD.33564222
Ad-AwareTrojan.GenericKD.33564222
SophosGeneric PUA JH (PUA)
ComodoTrojWare.Win32.Agent.OSCF@5rs7jr
McAfee-GW-EditionBehavesLike.Win32.Generic.vh
Trapminemalicious.moderate.ml.score
EmsisoftTrojan.GenericKD.33564222 (B)
SentinelOneDFI – Malicious PE
CyrenW32/Trojan.CLL.gen!Eldorado
Antiy-AVLGrayWare/Win32.FlyStudio.a
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D200263E
MicrosoftTrojan:Win32/Occamy.C
Acronissuspicious
McAfeeArtemis!9C426FAF4F92
MAXmalware (ai score=99)
VBA32BScope.Trojan.Tonmye
MalwarebytesSpyware.PasswordStealer
TrendMicro-HouseCallTROJ_GEN.R002H0CCP20
IkarusTrojan-PSW.QQpass
eGambitUnsafe.AI_Score_99%
FortinetW32/QQWare.A!tr

How to remove Risktool.Flystudio.16884?

Risktool.Flystudio.16884 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment