Trojan

Trojan-PSW.Win32.Racealer.lrf malicious file

Malware Removal

The Trojan-PSW.Win32.Racealer.lrf is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-PSW.Win32.Racealer.lrf virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

telete.in

How to determine Trojan-PSW.Win32.Racealer.lrf?


File Info:

crc32: AD48F790
md5: cb04ee69ca77611d15bf1cb1c3a37b52
name: CB04EE69CA77611D15BF1CB1C3A37B52.mlw
sha1: 90c0923fcd672c7cbe4079cde5d08641edde65ea
sha256: 3ab7eca908cbfcc0aefea517b4482efbe5c0e7c6c55b23ae3d05125fb5cc29e4
sha512: a0f291450390a7dbaa4479fdd4f62fa26057a2ac5376569900accac744c775aceb346dad4c62c164f5ffb31b30fb4ae778a0b100465f5699bf1b965de51f44bd
ssdeep: 24576:OG++PWQamhejtodtzcodFukj/gfsEBQetmbf8GfPLg:r/2odtcodf/gsGQewbUGfP
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan-PSW.Win32.Racealer.lrf also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 004befdb1 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Siggen14.65227
CynetMalicious (score: 100)
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (W)
AlibabaTrojanPSW:Win32/Racealer.b7b6f526
K7GWTrojan ( 004befdb1 )
Cybereasonmalicious.fcd672
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.EnigmaProtector.J suspicious
ZonerProbably Heur.ExeHeaderH
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
KasperskyTrojan-PSW.Win32.Racealer.lrf
BitDefenderTrojan.GenericKD.46894998
NANO-AntivirusTrojan.Win32.Racealer.iziifj
MicroWorld-eScanTrojan.GenericKD.46894998
TencentWin32.Trojan-qqpass.Qqrob.Sxnw
Ad-AwareTrojan.GenericKD.46894998
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34110.DHW@aqfkTJfG
McAfee-GW-EditionBehavesLike.Win32.Dropper.tc
FireEyeGeneric.mg.cb04ee69ca77611d
EmsisoftTrojan.GenericKD.46894998 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1142958
eGambitUnsafe.AI_Score_58%
KingsoftWin32.PSWTroj.Undef.(kcloud)
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataWin32.Trojan.Agent.VCP430
AhnLab-V3Trojan/Win.Generic.R438277
McAfeeArtemis!CB04EE69CA77
MAXmalware (ai score=85)
VBA32Trojan.Zpevdo
MalwarebytesSpyware.RaccoonStealer
PandaTrj/CI.A
RisingPUF.Pack-Enigma!1.BA33 (CLASSIC)
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/Racealer
AVGWin32:MalwareX-gen [Trj]
Paloaltogeneric.ml

How to remove Trojan-PSW.Win32.Racealer.lrf?

Trojan-PSW.Win32.Racealer.lrf removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment