Trojan

Trojan-PSW.Win32.Racealer.eao removal instruction

Malware Removal

The Trojan-PSW.Win32.Racealer.eao is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-PSW.Win32.Racealer.eao virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Spanish (Paraguay)
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan-PSW.Win32.Racealer.eao?


File Info:

crc32: A252BE48
md5: 556876f77d1f03c27794f4c136a6c78d
name: source1.cfg
sha1: 1664bf3ef58350190db7d0a14cbb024a877e93b8
sha256: 47812110d9dfcab5e3c5b092370bfc6ee9f95d50b2fb69c9e2d0fbd047ef79d6
sha512: 352690c5fc951172f435a96266170ff806151eb367e7974a903df72bad576eabef1755368509b9d5d27f5c321950ceb67e712b99905ce0cf125070e2141b7c37
ssdeep: 6144:ASzLLAVwA9wjjx95hBJDt69XU5lot8B01AlF3veyPMesiJeyCS5y6KJbNENVyp:BnAVwA9w5dLDykvk8B0mbWyPZ3C6iz
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan-PSW.Win32.Racealer.eao also known as:

BkavW32.AIDetectVM.malware
DrWebTrojan.PWS.Siggen2.45312
MicroWorld-eScanTrojan.GenericKDZ.65637
FireEyeGeneric.mg.556876f77d1f03c2
Qihoo-360Win32/Trojan.PSW.8b7
McAfeeArtemis!556876F77D1F
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 0056324e1 )
BitDefenderTrojan.GenericKDZ.65637
K7GWTrojan ( 0056324e1 )
Cybereasonmalicious.ef5835
Invinceaheuristic
BitDefenderThetaGen:NN.ZexaF.34104.BqW@aGqKAiO
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:CoinminerX-gen [Trj]
GDataTrojan.GenericKDZ.65637
KasperskyTrojan-PSW.Win32.Racealer.eao
AlibabaTrojanPSW:Win32/Racealer.a515ae1a
AegisLabTrojan.Win32.Racealer.i!c
RisingTrojan.Kryptik!8.8 (CLOUD)
Endgamemalicious (high confidence)
SophosMal/RyPack-A
F-SecureTrojan.TR/Crypt.Agent.fenep
TrendMicroTROJ_GEN.R002C0DCM20
McAfee-GW-EditionBehavesLike.Win32.Generic.gc
Trapminesuspicious.low.ml.score
EmsisoftTrojan.GenericKDZ.65637 (B)
IkarusTrojan.Win32.Crypt
CyrenW32/Trojan.EKJB-2268
JiangminBackdoor.Tofsee.brb
AviraTR/Crypt.Agent.fenep
MAXmalware (ai score=89)
Antiy-AVLTrojan/Win32.Wacatac
MicrosoftTrojan:Win32/Racealer.DSK!MTB
ArcabitTrojan.Generic.D10065
ZoneAlarmTrojan-PSW.Win32.Racealer.eao
AhnLab-V3Trojan/Win32.MalPe.R329480
Acronissuspicious
VBA32BScope.Trojan.AET.281105
ALYacTrojan.GenericKDZ.65637
Ad-AwareTrojan.GenericKDZ.65637
MalwarebytesTrojan.Injector
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Kryptik.HCDT
TrendMicro-HouseCallTROJ_GEN.R002C0DCM20
TencentWin32.Trojan-qqpass.Qqrob.Suxs
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_61%
FortinetW32/Kryptik.HCDZ!tr
AVGWin32:CoinminerX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan-PSW.Win32.Racealer.eao?

Trojan-PSW.Win32.Racealer.eao removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment