Trojan

How to remove “Trojan.Biodata”?

Malware Removal

The Trojan.Biodata is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Biodata virus can do?

  • Attempts to connect to a dead IP:Port (2 unique times)
  • Presents an Authenticode digital signature
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.

Related domains:

z.whorecord.xyz
master.etl.desktop.qq.com
a.tomx.xyz

How to determine Trojan.Biodata?


File Info:

crc32: 6C4D1B54
md5: ae2d37545d0d52a2fbd1b9f3bb270ea6
name: call_of_duty_mobile_900206461.exe
sha1: 1af225a8508a1b6f717516e05f89f3a272c685b0
sha256: e0bb0223712f21a759fffa6eea64b8a1fd5130c612e9aac21567203bce58bdff
sha512: ca880bbd308f835e96cc865594f90c17d3a06dad4bc4ce991260b5c208dc859937b5a6d7f89cd2b27a96d0183a782913f3d8806eb2e184be79f5e4347994d194
ssdeep: 24576:q/KiLPCdw5c8RxEUqckhIXrnq7nJVL8ZXFzIoh0IMDXATvqvyUHatF:piLPCG5Icnq7JVQpVIoxMDX0qBaL
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Biodata also known as:

CylanceUnsafe
ZillyaTrojan.Biodata.Win32.9390
JiangminTrojan.Biodata.vyz
Antiy-AVLTrojan/Win32.Biodata
VBA32Trojan.Biodata
eGambitUnsafe.AI_Score_97%

How to remove Trojan.Biodata?

Trojan.Biodata removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment