Trojan

Trojan.Adkor removal instruction

Malware Removal

The Trojan.Adkor is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Adkor virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Performs some HTTP requests
  • Installs itself for autorun at Windows startup

Related domains:

z.whorecord.xyz
hybridview.co.kr
ad.planclick.co.kr
a.tomx.xyz

How to determine Trojan.Adkor?


File Info:

crc32: 4FA875F9
md5: 3aa4ee3bbb834066439cb2fa21f11450
name: winclientservice20181224.exe
sha1: 9116c5993cbd1410005e9ed5c3eb9888b8490bde
sha256: ebc42321b301b8eaf965b2ee62c9e1ecf3ab104409cdad797edfab648a84f098
sha512: 00a12953f3d8c4e56ad4f3dcc8cf0dc70b5d9d1bf970f965157676d4a791ec55ba0460ab78423194dd5cce54aa76e2437c64d9931af0538037630f4b4791747d
ssdeep: 49152:zTLEBVJYS9GLPSN4FDfZkPLTYxOPT2TdPilcxK/5ZiVg:zjLKODfZ6TYxOaTdPilcWXiu
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright Plan11 All rights reserved
InternalName: WinClientService
FileVersion: 2018.12.24.2
CompanyName: Plan11
Comments: R3
ProductName: WinClientService
ProductVersion: 2018.12.24.2
FileDescription: WinClientService
OriginalFilename: WinClientService.exe
Translation: 0x0409 0x04e4

Trojan.Adkor also known as:

DrWebTrojan.Adkor.1025
McAfeeArtemis!3AA4EE3BBB83
MalwarebytesAdware.KorAd
K7GWAdware ( 004f2b221 )
K7AntiVirusAdware ( 004f2b221 )
ESET-NOD32a variant of Win32/Adware.Kraddare.LV
ViRobotAdware.Agent.3272872
RisingPUA.Presenoker!8.F608 (CLOUD)
ZillyaAdware.Kraddare.Win32.7921
TrendMicroAdware.Win32.Kraddare.AF
McAfee-GW-EditionArtemis
SophosMal/SwiftG-X
MaxSecureTrojan.Malware.11973.susgen
MicrosoftPUA:Win32/Presenoker
AhnLab-V3PUP/Win32.KorAd.C2903056
VBA32Trojan.Adkor
CylanceUnsafe
TrendMicro-HouseCallAdware.Win32.Kraddare.AF
eGambitUnsafe.AI_Score_99%

How to remove Trojan.Adkor?

Trojan.Adkor removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment