Trojan

Trojan.QakbotPMF.S17599758 (file analysis)

Malware Removal

The Trojan.QakbotPMF.S17599758 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.QakbotPMF.S17599758 virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.QakbotPMF.S17599758?


File Info:

crc32: 60012A1B
md5: 11ec92eaab779bd56a1c9933661d60a8
name: 11EC92EAAB779BD56A1C9933661D60A8.mlw
sha1: e91d2e640a85776eb7fc1fe8aaf9c510542c2166
sha256: 9133e3a2b344de5e4b4addba2ceae1ed630cb243ec59436a6ca8ab14ff9373d8
sha512: 2cec9d42a12f5efda7be1cc867d7d95379b3992b4223fc5aca656fc2eb7bcc8a459bb9fcd3713ffdb515a65da44ca1d45b4fddd6c80bc131eca13cd7f8d7e433
ssdeep: 1536:vryTj0VC8RSzA9JX9zFrLpVHmgGJ68lCb8b13EOzwngBoqKMMMMBYIjUlVcnRya0:vOU5X9BrbGJ/V37wg4MuYXV8zPYkY8S
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.QakbotPMF.S17599758 also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Graftor.864922
FireEyeGeneric.mg.11ec92eaab779bd5
CAT-QuickHealTrojan.QakbotPMF.S17599758
McAfeeW32/PinkSbot-HF!11EC92EAAB77
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderGen:Variant.Graftor.864922
K7GWSpyware ( 0040f0131 )
K7AntiVirusSpyware ( 0040f0131 )
CyrenW32/S-9e2a7b20!Eldorado
SymantecTrojan.Gen.2
APEXMalicious
ClamAVWin.Malware.Ezxf-9806742-0
AlibabaTrojan:Win32/QakBot.75ae9e88
NANO-AntivirusTrojan.Win32.RTM.idrmig
RisingTrojan.Kryptik!1.D014 (CLASSIC)
Ad-AwareGen:Variant.Graftor.864922
EmsisoftGen:Variant.Graftor.864922 (B)
DrWebBackDoor.Qbot.557
TrendMicroTrojanSpy.Win32.QAKBOT.SMTHB.hp
McAfee-GW-EditionW32/PinkSbot-HF!11EC92EAAB77
SophosMal/Generic-S
IkarusTrojan.Win32.Krypt
JiangminTrojan.Banker.RTM.su
MAXmalware (ai score=87)
Antiy-AVLGrayWare/Win32.Kryptik.ehls
MicrosoftTrojan:Win32/QakBot.MW!MTB
GridinsoftTrojan.Win32.Agent.oa
ArcabitTrojan.Graftor.DD329A
GDataGen:Variant.Graftor.864922
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.QBot.C4262254
ALYacGen:Variant.Graftor.864922
TrendMicro-HouseCallTrojanSpy.Win32.QAKBOT.SMTHB.hp
FortinetW32/Kryptik.HDNN!tr
Paloaltogeneric.ml

How to remove Trojan.QakbotPMF.S17599758?

Trojan.QakbotPMF.S17599758 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment