Risk

RiskWare.Packed (file analysis)

Malware Removal

The RiskWare.Packed is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What RiskWare.Packed virus can do?

  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine RiskWare.Packed?


File Info:

crc32: D9858335
md5: a67045bde4106af81dc8c1554be8633b
name: autojxvinhvien.exe
sha1: 08ecb072a97c5ccae0591dfb23de5f944704fe19
sha256: e495377a9eb4296378c0ec7c8113086dd9bc089538f3dc584b0f12fa8707cd74
sha512: 48bc7d9b599ce112162a4f2f724efae4437fdb22fbc36532470f9944028b21d1d5db62b388298ce4fd1cdd00ff9a4dae9ebbfdb7799146aa2b4f3e998505054c
ssdeep: 196608:uIU7fZTo+U7Y5fnCtXMZFgwqZb0YhbAwex:uFfNU8CKZvqDex
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

RiskWare.Packed also known as:

CAT-QuickHealTrojan.IGENERIC
McAfeeArtemis!A67045BDE410
K7AntiVirusRiskware ( 004e19d31 )
BitDefenderTrojan.GenericKD.41543021
K7GWRiskware ( 004e19d31 )
Cybereasonmalicious.de4106
CyrenW32/AutoIt.IG.gen!Eldorado
SymantecTrojan.Gen.2
AvastWin32:Malware-gen
GDataWin32.Application.Agent.NKZPMD
KasperskyTrojan.Win32.Ekstak.sxip
NANO-AntivirusVirus.Win32.Gen.ccmw
TencentWin32.Trojan.Ekstak.Lmke
SophosGeneric PUA KC (PUA)
ComodoMalware@#9bc2l63fahf6
F-SecureHeuristic.HEUR/AGEN.1022888
ZillyaTool.GameHack.Win32.8695
McAfee-GW-EditionBehavesLike.Win32.Downloader.wc
FireEyeTrojan.GenericKD.41543021
EmsisoftTrojan.GenericKD.41543021 (B)
IkarusPUA.RiskWare.GameHack
JiangminExploit.CVE-2015-2387.ec
AviraHEUR/AGEN.1022888
MAXmalware (ai score=88)
ArcabitTrojan.Generic.D2749C60
ZoneAlarmTrojan.Win32.Ekstak.sxip
MicrosoftTrojan:Win32/Occamy.C
BitDefenderThetaGen:NN.ZexaF.34090.oi0faGBeRGoi
VBA32BScope.Trojan.Download
MalwarebytesRiskWare.Packed
ESET-NOD32a variant of Win32/RiskWare.GameHack.AP
TrendMicro-HouseCallTROJ_GEN.R002H0CH919
RisingTrojan.Generic@ML.93 (RDML:x7OGjr6gZ752XxcPRg8zHg)
YandexTrojan.AvsArher.bS9LKk
FortinetRiskware/GameHack.AP
AVGWin32:Malware-gen
Qihoo-360QVM41.1.Malware.Gen

How to remove RiskWare.Packed?

RiskWare.Packed removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment