Trojan

Should I remove “Trojan.MalPack.PS”?

Malware Removal

The Trojan.MalPack.PS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.MalPack.PS virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • Reads data out of its own binary image
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)

Related domains:

q.pieshua.com

How to determine Trojan.MalPack.PS?


File Info:

crc32: 8CAF493E
md5: e86362323e0678727024c9733c6d277f
name: JPGRepair_jz5u.com.exe
sha1: 0a5be35c17001eb2035517870e666610d3460a9d
sha256: 3954ed23ba188e657959509fd418273f83f7fa186dbda190d5284b1aa92ebbff
sha512: e66a21267f50bb0d8c8cb421e101d4a92a0abf046a21cb84b1942478530c9d7169f35e2c92d022c660dc41bb22d0fba1fb9a91774f9caf0e20623e54e1c097cb
ssdeep: 24576:Ws3FUiA3QZbixlRGUQ1mKluCPu1SCueT4QEKadYiomud4NUp65vi:HFUiA3fxD14RuSjeTQKaWiGd4Wkvi
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2018
InternalName: x667ax80fdx4e0bx8f7dx5668.exe
FileVersion: 2.2.1.224
ProductName: x667ax80fdx4e0bx8f7dx5668.exe
ProductVersion: 2.2.1.224
FileDescription: x667ax80fdx4e0bx8f7dx5668
OriginalFilename: x667ax80fdx4e0bx8f7dx5668.exe
Translation: 0x0804 0x04b0

Trojan.MalPack.PS also known as:

MicroWorld-eScanGen:Variant.Adware.Razy.241145
FireEyeGeneric.mg.e86362323e067872
CAT-QuickHealTrojan.MauvaiseRI.S5252500
McAfeePUP-XEI-BE
MalwarebytesTrojan.MalPack.PS
ZillyaDownloader.Snojan.Win32.445
SangforMalware
K7AntiVirusAdware ( 005524301 )
BitDefenderGen:Variant.Adware.Razy.241145
K7GWAdware ( 005524301 )
Cybereasonmalicious.23e067
TrendMicroPUA_QJWMONKEY
F-ProtW32/S-65853e51!Eldorado
SymantecSMG.Heur!gen
APEXMalicious
ClamAVWin.Malware.Score-6823441-0
GDataGen:Variant.Adware.Razy.241145
Kasperskynot-a-virus:Downloader.Win32.Snojan.fciy
AlibabaDownloader:Win32/Snojan.2b51d686
NANO-AntivirusTrojan.Win32.Snojan.eynton
RisingTrojan.Generic@ML.100 (RDMK:lZYDSktKcggWy9cvoU3ZbA)
Ad-AwareGen:Variant.Adware.Razy.241145
SophosQjMonkey (PUA)
ComodoApplicUnwnt@#1e7gxsj8jh90d
F-SecureAdware.ADWARE/Qjwmonkey.pgzbl
DrWebAdware.Qjwmonkey.136
VIPRETrojan.Win32.Generic!BT
Invinceaheuristic
McAfee-GW-EditionPUP-XEI-BE
EmsisoftGen:Variant.Adware.Razy.241145 (B)
IkarusPUA.Qjwmonkey
CyrenW32/S-65853e51!Eldorado
JiangminDownloader.Generic.myd
WebrootW32.Adware.Gen
AviraADWARE/Qjwmonkey.pgzbl
MAXmalware (ai score=100)
Antiy-AVLRiskWare[Downloader]/Win32.Snojan
Endgamemalicious (high confidence)
ArcabitTrojan.Adware.Razy.D3ADF9
SUPERAntiSpywareAdware.Qjwmonkey/Variant
ZoneAlarmnot-a-virus:Downloader.Win32.Snojan.fciy
MicrosoftBrowserModifier:Win32/Qiwmonk
AhnLab-V3PUP/Win32.Qiwmonk.C2173910
ALYacGen:Variant.Adware.Razy.241145
VBA32BScope.Downloader.Snojan
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/Adware.Qjwmonkey.H
TrendMicro-HouseCallPUA_QJWMONKEY
TencentMalware.Win32.Gencirc.10b3bad1
YandexPUA.Downloader!
SentinelOneDFI – Suspicious PE
eGambitUnsafe.AI_Score_99%
FortinetRiskware/Generic
AVGFileRepMalware [PUP]
CrowdStrikewin/malicious_confidence_80% (D)

How to remove Trojan.MalPack.PS?

Trojan.MalPack.PS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment