The Trojan-Banker.Win32.Emotet.gchy is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.
What Trojan-Banker.Win32.Emotet.gchy virus can do?
z.whorecord.xyz |
a.tomx.xyz |
r4—sn-4g5ednsy.gvt1.com |
update.googleapis.com |
redirector.gvt1.com |
r1—sn-4g5ednsr.gvt1.com |
File Info:
crc32: 15A214B6md5: 3addda1650965757f715e7c13492007dname: f7UbMSKmDVxyY49U.exesha1: 346ecae3a57864248b5712932bc99af4b21f16fdsha256: 4b404ade8a36ed5952e7e06738a2ad31658df28146b15a718c4fcdaf9448c110sha512: 87421ec1cb39df6c055b38886c0930789296953718a31955e32ac85b843b441f315eb8694f161609076ed5564eb55ca584db77933c40a2bb68618a6b61359b65ssdeep: 6144:9LHsfMZz0e/aVq6XX4jYDRbqzN7u/mWkzPccld5b2IOIQlNtGZknCv3fczlpVKd:9jsMAe/aVdXXsYFbqp7dYofczlnoVtype: PE32 executable (GUI) Intel 80386, for MS WindowsVersion Info:
LegalCopyright: Copyright xa9 2006InternalName: oscilloscopeFileVersion: 2, 0, 0, 0CompanyName: Waikato UniversityPrivateBuild: LegalTrademarks: Comments: Modified by Cyril COMTEProductName: Waikato University oscilloscope-compressorSpecialBuild: ProductVersion: 2, 0, 0, 0FileDescription: oscilloscope-compressorOriginalFilename: oscilloscope.exe->compressorTranslation: 0x1409 0x04b0
Bkav | W32.AIDetectVM.malware1 |
Elastic | malicious (high confidence) |
MicroWorld-eScan | Trojan.GenericKDZ.69658 |
FireEye | Trojan.GenericKDZ.69658 |
McAfee | GenericRXAA-AA!3ADDDA165096 |
BitDefender | Trojan.GenericKDZ.69658 |
K7GW | Riskware ( 0040eff71 ) |
APEX | Malicious |
Kaspersky | Trojan-Banker.Win32.Emotet.gchy |
Ad-Aware | Trojan.GenericKDZ.69658 |
DrWeb | Trojan.Emotet.1004 |
MAX | malware (ai score=87) |
Microsoft | Trojan:Win32/Emotet.ARJ!MTB |
Arcabit | Trojan.Generic.D1101A |
ZoneAlarm | Trojan-Banker.Win32.Emotet.gchy |
GData | Trojan.GenericKDZ.69658 |
ALYac | Trojan.Downloader.JUXO |
Malwarebytes | Trojan.MalPack.TRE |
ESET-NOD32 | Win32/Emotet.CD |
Fortinet | W32/Emotet.F4A9!tr |
The Win32/GenKryptik.GVYR is considered dangerous by lots of security experts. When this infection is active,…
The Fragtor.525921 is considered dangerous by lots of security experts. When this infection is active,…
The Troj/Steal-DWX is considered dangerous by lots of security experts. When this infection is active,…
The MSIL/Kryptik.ALJI is considered dangerous by lots of security experts. When this infection is active,…
The Lazy.477826 is considered dangerous by lots of security experts. When this infection is active,…
The Fragtor.369452 is considered dangerous by lots of security experts. When this infection is active,…