Trojan

Trojan.QQPass (file analysis)

Malware Removal

The Trojan.QQPass is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.QQPass virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.QQPass?


File Info:

crc32: F43CCB7B
md5: 478ba0e80c1995c108852d0299fa3bd3
name: 478BA0E80C1995C108852D0299FA3BD3.mlw
sha1: 4c1388ab39d977a06097042130befc80a402ec4b
sha256: 903ae225c44419305057df4cf8df10130993ccc56f7913d58752b94e79f0398b
sha512: 2ddb571da4ca32c91e927e7d7d084bcfbb08e1a7000d4582658c1ce9c07d7db2f8c525871e1ae018c5919c3e744df1498ee20de8aa1d27eed44cac640b0b4372
ssdeep: 1536:MD4FKJdAQRSXbwS526KTzXlH4JHzPWbjlcpKj:MD4gXMrwS25QqnlHj
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.QQPass also known as:

BkavW32.AIDetectVM.malware2
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Qqpass.11516
MicroWorld-eScanGen:Variant.Graftor.310786
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacGen:Variant.Graftor.310786
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan-Downloader ( 004cd1811 )
BitDefenderGen:Variant.Graftor.310786
K7GWTrojan-Downloader ( 004cd1811 )
CrowdStrikewin/malicious_confidence_60% (D)
CyrenW32/S-cd65703c!Eldorado
SymantecTrojan Horse
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.Downloader-65896
Kasperskynot-a-virus:AdWare.Win32.MultiPlug.ofnr
AlibabaTrojanDownloader:Win32/MultiPlug.8ad6f077
NANO-AntivirusTrojan.Win32.Qqpass.duzfkz
SUPERAntiSpywarePUP.AdLoad/Variant
RisingDownloader.Adload!8.D1 (CLOUD)
Ad-AwareGen:Variant.Graftor.310786
EmsisoftGen:Variant.Graftor.310786 (B)
ComodoTrojWare.Win32.TrojanDownloader.Adload.FT@5sx9jy
F-SecureAdware.ADWARE/Adware.Gen7
BaiduWin32.Trojan-Downloader.Adload.n
ZillyaDownloader.Adload.Win32.20350
TrendMicroTROJ_MAMBA.SMW
McAfee-GW-EditionDownloader-FAYO!478BA0E80C19
FireEyeGeneric.mg.478ba0e80c1995c1
SophosGeneric PUA EM (PUA)
IkarusTrojan-Spy.Win32.Zbot
JiangminTrojanDownloader.Agent.eqvu
AviraADWARE/Adware.Gen7
Antiy-AVLTrojan/Win32.TSGeneric
MicrosoftBrowserModifier:Win32/Diplugem
ArcabitTrojan.Graftor.D4BE02
ZoneAlarmnot-a-virus:AdWare.Win32.MultiPlug.ofnr
GDataGen:Variant.Graftor.310786
CynetMalicious (score: 85)
AhnLab-V3PUP/Win32.BrowseFox.R155011
McAfeeDownloader-FAYO!478BA0E80C19
MAXmalware (ai score=100)
VBA32TrojanDownloader.Agent
MalwarebytesTrojan.QQPass
PandaTrj/CI.A
ESET-NOD32a variant of Win32/TrojanDownloader.Adload.NPK
TrendMicro-HouseCallTROJ_MAMBA.SMW
TencentMalware.Win32.Gencirc.10b3b249
YandexTrojan.GenAsa!uZvW2dgBIwQ
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Adload.NPD!tr.dldr
AVGWin32:Adware-gen [Adw]
Cybereasonmalicious.80c199
AvastWin32:Adware-gen [Adw]
Qihoo-360Win32/RootKit.Rootkit.7e5

How to remove Trojan.QQPass?

Trojan.QQPass removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment