The Trojan-Banker.Win32.Qbot.wgd is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.
What Trojan-Banker.Win32.Qbot.wgd virus can do?
z.whorecord.xyz |
a.tomx.xyz |
r4—sn-4g5e6nzz.gvt1.com |
www.ip-adress.com |
ocsp.verisign.com |
sf.symcd.com |
s2.symcb.com |
sv.symcd.com |
sv.symcb.com |
File Info:
crc32: 7A28751Cmd5: e2bdfdc713c413bf1f160b45a836a6e7name: tmpwwfh3cj9sha1: 22332f096694c877a9ba29d45629136b5f3ac38csha256: f0a001a416e0fef0b77d3a713db4a9d621f6a7984ad4788f2ac5bd04d4dee97esha512: d611aea76448f440aff44d65da99c7ca5426b63b1b608e8b491b8367c2873063c928df4b545de8e275034384c3e9fa5b764a941564bce28a35abc2ba3e1fab45ssdeep: 12288:FlQB2wwLHqpVxT85LfHbRhco5QFuo+NUYkfgn6ggKE9B:G2wwTX5Ldhf5QUo+NDkfg93ETtype: PE32 executable (GUI) Intel 80386, for MS WindowsVersion Info:
LegalCopyright: Copyright xa9 2015 ZPNInternalName: ZPN ConnectFileVersion: 2.0.2.0CompanyName: ZPNLegalTrademarks1: All Rights ReservedLegalTrademarks2: All Rights ReservedProductName: ZPN Connect v1ProductVersion: 2.0.2FileDescription: ZPN ConnectOriginalFilename: ZpnCli.exeTranslation: 0x0409 0x04e4
Bkav | W32.AIDetectVM.malwareB |
MicroWorld-eScan | Trojan.GenericKDZ.67985 |
FireEye | Generic.mg.e2bdfdc713c413bf |
McAfee | W32/PinkSbot-GW!E2BDFDC713C4 |
ALYac | Gen:Variant.Ursu.911784 |
Malwarebytes | Backdoor.Qbot |
Sangfor | Malware |
K7AntiVirus | Trojan ( 00568ffd1 ) |
K7GW | Trojan ( 00568ffd1 ) |
Invincea | heuristic |
BitDefenderTheta | Gen:NN.ZexaF.34128.NI1@a87nyqki |
Symantec | ML.Attribute.HighConfidence |
APEX | Malicious |
Kaspersky | Trojan-Banker.Win32.Qbot.wgd |
BitDefender | Trojan.GenericKDZ.67985 |
Endgame | malicious (high confidence) |
Emsisoft | Trojan.GenericKDZ.67985 (B) |
TrendMicro | Backdoor.Win32.QAKBOT.SME |
Fortinet | W32/QBOT.CC!tr |
Trapmine | malicious.high.ml.score |
Sophos | Troj/Qbot-FS |
Paloalto | generic.ml |
MAX | malware (ai score=80) |
Antiy-AVL | GrayWare/Win32.Kryptik.ehls |
Arcabit | Trojan.Generic.D10991 |
ZoneAlarm | Trojan-Banker.Win32.Qbot.wgd |
AhnLab-V3 | Trojan/Win32.Kryptik.R340787 |
Acronis | suspicious |
VBA32 | BScope.TrojanRansom.Shade |
Ad-Aware | Trojan.GenericKDZ.67985 |
ESET-NOD32 | a variant of Win32/GenKryptik.EMQL |
Rising | Malware.Heuristic!ET#76% (RDMK:cmRtazoSXxGrv4pQ3Md1o74QtWzu) |
SentinelOne | DFI – Malicious PE |
eGambit | PE.Heur.InvalidSig |
GData | Trojan.GenericKDZ.67985 |
AVG | Win32:BankerX-gen [Trj] |
Panda | Trj/GdSda.A |
CrowdStrike | win/malicious_confidence_100% (D) |
Qihoo-360 | HEUR/QVM19.1.FCB8.Malware.Gen |
The Malware.Heuristic.2013 is considered dangerous by lots of security experts. When this infection is active,…
The Application.Bundler.iStartSurf.264 is considered dangerous by lots of security experts. When this infection is active,…
The Ursu.726157 is considered dangerous by lots of security experts. When this infection is active,…
The Virus:Win32/Xpaj.B is considered dangerous by lots of security experts. When this infection is active,…
The Trojan.GenericPMF.S32612790 is considered dangerous by lots of security experts. When this infection is active,…
The MemScan:Worm.Bundpil.B is considered dangerous by lots of security experts. When this infection is active,…