Risk

RiskWare.Repack removal guide

Malware Removal

The RiskWare.Repack is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What RiskWare.Repack virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine RiskWare.Repack?


File Info:

name: A8866FEBF8825A65FBAD.mlw
path: /opt/CAPEv2/storage/binaries/c70c1fa262d32756b1e8ba3752aeb2617a82ebf29af31a2145f978d0f4152b6c
crc32: CBA90B3B
md5: a8866febf8825a65fbadef42b3af0b27
sha1: 678f8d636459f21166afdcdd796e2596c6666f55
sha256: c70c1fa262d32756b1e8ba3752aeb2617a82ebf29af31a2145f978d0f4152b6c
sha512: 50770bdb4890c4445bc266f1b88dd99a66e9065fb59db4bff7d24317027b6d48ac1c8fb06e59cff7908e8a8fbd08c6c0cd6245f5ac74bea2057080eb3fe0fde4
ssdeep: 768:MB1qy1xsLKgPGgogvOwsyGg9lTjiHqKDVFBRtnyXN3V8eUFPL5oO27Q2foSTFs3/:s1qJLKpgkjjDTUdUFTYtJDaBHDFfnH1
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12B532882A9A3D435E1E14AF85E61C1309A377E531C7C9115B58C3B8DEF2F6B9680D3B2
sha3_384: 386a799717576bb1f6082bf8eab66918fd26fbffc65c00111f8352289480f5ca12ded13b7d5545103b65a6e29d492c2c
ep_bytes: 558bec83c4c453565733c08945f08945
timestamp: 1992-06-19 22:22:17

Version Info:

Comments: This installation was built with Inno Setup.
CompanyName: lrepacks.ru
FileDescription: IObit Driver Booster Setup
FileVersion: 6.6.0.455.0
LegalCopyright:
ProductName: IObit Driver Booster
ProductVersion: 6.6.0.455
Translation: 0x0000 0x04b0

RiskWare.Repack also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanGen:Variant.Application.HackTool.Repack.1
FireEyeGen:Variant.Application.HackTool.Repack.1
VIPREGen:Variant.Application.HackTool.Repack.1
CrowdStrikewin/grayware_confidence_100% (D)
BitDefenderGen:Variant.Application.HackTool.Repack.1
EmsisoftGen:Variant.Application.HackTool.Repack.1 (B)
DrWebTrojan.Moneyinst.751
ZillyaAdware.Opener.Script.8
ArcabitTrojan.Application.HackTool.Repack.1
GDataGen:Variant.Application.HackTool.Repack.1
ALYacGen:Variant.Application.HackTool.Repack.1
MAXmalware (ai score=73)
MalwarebytesRiskWare.Repack
MaxSecureTrojan.Malware.300983.susgen

How to remove RiskWare.Repack?

RiskWare.Repack removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment