Malware

Trickbot.18 removal guide

Malware Removal

The Trickbot.18 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trickbot.18 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trickbot.18?


File Info:

crc32: 9EA85AEE
md5: b0489767e1fc3f908ca25fca5486ac8f
name: upload_file
sha1: 987821c73c0019e14f46dee1c2d12c2800785834
sha256: 586dc91f13f8c0c7a99d7b1477d03e00904fbf744a12d525d989b31cafc0244b
sha512: 352e02e5d8a83beba2471b65fbbee4919b94d026aa4e8d9fd9b1474bb62b0ae67424b8fb064f4a75393bd2de88d13c46e597bb274cffd276b2196b78f7b761d3
ssdeep: 384:YxsqJ3vAy3ruTnbG2pxGsodoOiE9UlvZl4PW0eaEdK0tt2tKSNNLE+C654C6A:0DJ37ruTaSAJdoBJZlKneNdptt204lEG
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trickbot.18 also known as:

DrWebTrojan.Trick.46429
MicroWorld-eScanGen:Variant.Trickbot.18
McAfeeTrojan-FRMC!B0489767E1FC
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderGen:Variant.Trickbot.18
K7GWTrojan ( 00552c221 )
K7AntiVirusTrojan ( 00552c221 )
TrendMicroTrojanSpy.Win32.TRICKBOT.SMZM3
BitDefenderThetaAI:Packer.01E111BD1E
SymantecTrojan Horse
ESET-NOD32a variant of Win32/Agent.ABDF
APEXMalicious
GDataGen:Variant.Trickbot.18
KasperskyHEUR:Trojan.Win32.Trickster.gen
AlibabaTrojan:Win32/Trickster.4eec96c2
AegisLabTrojan.Win32.Trickster.4!c
AvastWin32:BankerX-gen [Trj]
RisingTrojan.Trickster!8.E0E2 (TFE:6:iNcXw1Rr7qK)
Ad-AwareGen:Variant.Trickbot.18
F-SecureTrojan.TR/Crypt.ZPACK.Gen
Invinceaheuristic
McAfee-GW-EditionTrojan-FRMC!B0489767E1FC
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.b0489767e1fc3f90
EmsisoftGen:Variant.Trickbot.18 (B)
IkarusTrojan.Win32.VMProtect
CyrenW32/Trojan.LMPS-1819
AviraTR/Crypt.ZPACK.Gen
Endgamemalicious (high confidence)
ArcabitTrojan.Trickbot.18
ZoneAlarmHEUR:Trojan.Win32.Trickster.gen
MicrosoftTrojan:Win32/Tiggre!rfn
AhnLab-V3Trojan/Win32.Trickster.C3553759
Acronissuspicious
ALYacGen:Variant.Trickbot.18
MAXmalware (ai score=82)
TrendMicro-HouseCallTrojanSpy.Win32.TRICKBOT.SMZM3
SentinelOneDFI – Suspicious PE
AVGWin32:BankerX-gen [Trj]
PandaTrj/GdSda.A
Qihoo-360Win32/Trojan.393

How to remove Trickbot.18?

Trickbot.18 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment