Trojan

Trojan-Downloader.Win32.Bandit.jml removal guide

Malware Removal

The Trojan-Downloader.Win32.Bandit.jml is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Downloader.Win32.Bandit.jml virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • A process attempted to delay the analysis task.
  • Expresses interest in specific running processes
  • A process created a hidden window
  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Checks the CPU name from registry, possibly for anti-virtualization
  • Attempts to create or modify system certificates
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

Related domains:

venoxcontrol.com

How to determine Trojan-Downloader.Win32.Bandit.jml?


File Info:

crc32: CAFF95C9
md5: 0ed7f597b8e836be62789adb03f05b1e
name: myarcadeplugin2Bpro2Bv5_agnp3f0obgaa6rocaevhfwasadqxe4ma.exe
sha1: c566debc8695e41d0b54bdd641ef5bc6f98f286b
sha256: a60201dd20d31e84b4818ee9a6de7bcfa16271e7b16852bee1aee59f16b1cca6
sha512: 7744024ebe0a2d8bc72c32126d393d204bbe10e623020857f04625a57400c600ce0f7f4a4b6bf21365d270232c4befe190ef3153a57925fa9456f418b37b31cc
ssdeep: 98304:UFBe+zcO/ddL7yLSDpiAN6v3tcxZ9rQ2W45fx4nOaaGoBJ:Sz/Du+Ig6PtcJrQ54L4nOaaGo
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0219 0x04e4

Trojan-Downloader.Win32.Bandit.jml also known as:

MicroWorld-eScanTrojan.GenericKD.32772195
McAfeeTrojan-FRQV!0ED7F597B8E8
MalwarebytesTrojan.MalPack.GS
SangforMalware
K7AntiVirusTrojan ( 003c36381 )
BitDefenderTrojan.GenericKD.32772195
K7GWTrojan ( 003c36381 )
Cybereasonmalicious.c8695e
Invinceaheuristic
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
GDataTrojan.GenericKD.32772195
KasperskyTrojan-Downloader.Win32.Bandit.jml
AlibabaTrojanDownloader:Win32/Bandit.57075d7e
AegisLabTrojan.Win32.Generic.4!c
RisingTrojan.Kryptik!1.BFC4 (CLASSIC)
Ad-AwareTrojan.GenericKD.32772195
ComodoMalware@#1wme40jc4wcfh
F-SecureTrojan.TR/AD.GoCloudnet.gckm
DrWebTrojan.Siggen8.58932
McAfee-GW-EditionBehavesLike.Win32.MultiPlug.wc
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.0ed7f597b8e836be
SophosMal/Generic-S
IkarusTrojan.Win32.Crypt
CyrenW32/Trojan.KTLJ-0616
JiangminTrojanDownloader.Bandit.ayu
WebrootW32.Trojan.Gen
AviraTR/AD.GoCloudnet.gckm
MAXmalware (ai score=86)
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D1F41063
ZoneAlarmTrojan-Downloader.Win32.Bandit.jml
MicrosoftTrojan:Win32/Skeeyah.A!MTB
AhnLab-V3Malware/Win32.RL_Generic.R301699
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.32517.Wx0@ayswLng
ALYacTrojan.GenericKD.32772195
VBA32Malware-Cryptor.Limpopo
CylanceUnsafe
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Kryptik.GYYS
TrendMicro-HouseCallTROJ_GEN.R03BC0DL219
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Malicious_Behavior.VEX
AVGFileRepMalware
CrowdStrikewin/malicious_confidence_90% (W)
Qihoo-360HEUR/QVM10.2.8FBD.Malware.Gen

How to remove Trojan-Downloader.Win32.Bandit.jml?

Trojan-Downloader.Win32.Bandit.jml removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment