Trojan

Trojan.Clicker removal instruction

Malware Removal

The Trojan.Clicker is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Clicker virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Clicker?


File Info:

crc32: B84E6FC6
md5: 05846abf1a9f12b4ea9bed71f5fb570d
name: jpwb85.exe
sha1: 7c2a784f3280522e8203d20e4265b70a86930a93
sha256: 422e2aa64acc63e54b9453bc90d36b42dd10b2edbd4eb1b3dd86db7569cac5e1
sha512: 44393ba590b23865dae2e7ae766364b129d1cf169975a70ec4a79578677e38f462dd36bc67e30c52fc525602ff15916f8d770ef2dbee291a93a4d5b06d832bff
ssdeep: 49152:WxTc3UzUPNuB6LUAFQNQWTTr6b6gqZkU/qDIL5/JuFMeBtUkqqKOhnYpOcoZf:+TpU4B6LbWTTr7VZkVq5J+MYUIYaN
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x8457x4f5cx6743x767bx8bb0x53f7xff1a2005SR05853
FileVersion: 2019.8.10.16
CompanyName: x5357x4eacx5e02x5efax90bax533ax4e03x5de7x8f6fx4ef6x5de5x4f5cx5ba4x3000www.jpwb.cc
Comments: x6781x54c1x4e94x7b14 WinXP|Win7-(32|64bit) x901ax7528x578b
ProductName: x6781x54c1x4e94x7b14
ProductVersion: 8.5 x7ecfx5178x7248
FileDescription: x6781x54c1x4e94x7b14 8.5 x7ecfx5178x7248
Translation: 0x0804 0x0000

Trojan.Clicker also known as:

DrWebTrojan.Click2.8232
CAT-QuickHealTrojan.Tiggre
CylanceUnsafe
SangforMalware
K7AntiVirusRiskware ( 0055746b1 )
K7GWRiskware ( 0055746b1 )
BitDefenderThetaGen:NN.ZexaF.34090.dmGfael6ptjb
GDataWin32.Trojan.Agent.ID0MAL
NANO-AntivirusTrojan.Win32.Clicker.rjkms
ViRobotTrojan.Win32.Z.Vigorf.2842740
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0DB320
McAfee-GW-EditionBehavesLike.Win32.BadFile.vc
SophosGeneric PUA HM (PUA)
CyrenW32/Trojan.VRWL-3221
WebrootW32.Trojan.Gen
MAXmalware (ai score=98)
Antiy-AVLTrojan/Win32.SGeneric
MicrosoftTrojan:Win32/Generic!rfn
AegisLabTrojan.Win32.Generic.4!c
McAfeeArtemis!05846ABF1A9F
VBA32Trojan.Bitrep
MalwarebytesTrojan.Clicker
ESET-NOD32a variant of Win32/2345.H potentially unwanted
TrendMicro-HouseCallTROJ_GEN.R002C0DB320
eGambitUnsafe.AI_Score_99%
FortinetW32/GE.56C9E675!tr
AVGFileRepMalware

How to remove Trojan.Clicker?

Trojan.Clicker removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment