Trojan

What is “Trojan-Proxy.Win32.Sybici.jh”?

Malware Removal

The Trojan-Proxy.Win32.Sybici.jh is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Proxy.Win32.Sybici.jh virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan-Proxy.Win32.Sybici.jh?


File Info:

crc32: C5A72809
md5: 225ea8cd5ad69fcb3cd12f4195ca946d
name: ztx777.exe
sha1: 8d1ef2f3aea443e9f759bc4bac0453cfdc3527dc
sha256: 54ac4b2b56fcc022ca19687db020d656d59840d7b28fe0dd99e99cb315b25371
sha512: ba7e2ee155417e292f98fd380747fbfbb1ee92713b57ca5e1eda2889e427e268512e9faf5e7441b94bd44e52644703c61b48e5c47137daf69c2763a80ed7b1f1
ssdeep: 6144:uHp/tvOn+gMcN+ZqLNRc+dapz7B+2JASwSx4dkv9W92StyMcVaDJ8+ezFD9t2rH:mLzgFN+ZiNa+dapvIHSjWkWYwDJ8qH
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: (C) 2007-2015 WebTweakTools.com
CompanyName: WebTweakTools.com
ProductName: Lolcats Decade
ProductVersion: 6.2.2.3
FileDescription: Punching Namespace Strikeut Diminishes Protocol
OriginalFilename: Lolcats Decade.exe
Translation: 0x0409 0x04b0

Trojan-Proxy.Win32.Sybici.jh also known as:

MicroWorld-eScanTrojan.GenericKD.32921659
McAfeeArtemis!225EA8CD5AD6
CylanceUnsafe
BitDefenderTrojan.GenericKD.32921659
CrowdStrikewin/malicious_confidence_100% (W)
ArcabitTrojan.Generic.D1F6583B
Invinceaheuristic
ESET-NOD32a variant of Win32/GenKryptik.EBQR
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan-Proxy.Win32.Sybici.jh
AvastFileRepMalware
TencentWin32.Trojan-proxy.Sybici.Hoos
Endgamemalicious (high confidence)
EmsisoftTrojan.GenericKD.32921659 (B)
F-SecureTrojan.TR/AD.Coroxy.kmmef
TrendMicroMal_HPGen-37b
McAfee-GW-EditionBehavesLike.Win32.Dropper.gc
FortinetW32/Malicious_Behavior.VEX
FireEyeGeneric.mg.225ea8cd5ad69fcb
SophosMal/Generic-S
WebrootW32.Trojan.Gen
AviraTR/AD.Coroxy.kmmef
MAXmalware (ai score=82)
MicrosoftTrojan:Win32/Occamy.B
ZoneAlarmTrojan-Proxy.Win32.Sybici.jh
Acronissuspicious
ALYacTrojan.GenericKD.32921685
Ad-AwareTrojan.GenericKD.32921659
TrendMicro-HouseCallMal_HPGen-37b
RisingMalware.Undefined!8.C (CLOUD)
IkarusTrojan-Ransom.Crypter
eGambitUnsafe.AI_Score_99%
GDataTrojan.GenericKD.32921659
BitDefenderThetaGen:NN.ZexaF.33568.Cq0@aWJqeWgi
AVGFileRepMalware
Cybereasonmalicious.3aea44
Qihoo-360Win32/Trojan.Proxy.40e

How to remove Trojan-Proxy.Win32.Sybici.jh?

Trojan-Proxy.Win32.Sybici.jh removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment