Trojan

Trojan.ScriptKD.3787 removal guide

Malware Removal

The Trojan.ScriptKD.3787 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.ScriptKD.3787 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Uses Windows utilities for basic functionality
  • Network activity detected but not expressed in API logs

How to determine Trojan.ScriptKD.3787?


File Info:

crc32: 7A86CD03
md5: 78bfa81ab3ce72176412d6c2e3024532
name: doit.exe
sha1: d7acaf816fe21093d3d8a52c6f21cfb937c59f0a
sha256: 8f5d953edb2bc058ced114549e1d0fe2d8afd140321a34ba23f9b06b8ed55372
sha512: d0ba2e6f4d03afdf65ca7c5304a1b02da3500e0511162281eafd2467b897921afa8e6bb59e4fa3f249f4b18adfff562528b8043d638b5fcd229a4eab679f17d4
ssdeep: 98304:DUdkBy6HjHf2Z+4XnZm1UO5ceeYa0F54mBFHnmxoR9bUD3FULJ:w2kS/0vy2wJF5tJSoR9bUhUJ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.ScriptKD.3787 also known as:

MicroWorld-eScanTrojan.ScriptKD.3787
FireEyeGeneric.mg.78bfa81ab3ce7217
CAT-QuickHealPUA.LinkuryRI.S10580007
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusAdware ( 0055ef7d1 )
BitDefenderTrojan.ScriptKD.3787
K7GWAdware ( 0055ef7d1 )
Cybereasonmalicious.ab3ce7
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/Toolbar.Linkury.BQ potentially unwanted
AvastWin32:Adware-gen [Adw]
ClamAVWin.Malware.Scriptkd-7004813-0
GDataGen:Variant.Ulise.98640
Kasperskynot-a-virus:AdWare.Win64.Linkury.t
NANO-AntivirusTrojan.Win32.Linkury.gyqczo
APEXMalicious
DrWebTrojan.Siggen7.63815
ZillyaAdware.Linkury.Win32.89974
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.AdwareLinkury.wc
Trapminemalicious.moderate.ml.score
EmsisoftTrojan.ScriptKD.3787 (B)
SentinelOneDFI – Malicious PE
JiangminAdWare.Linkury.ciuv
MAXmalware (ai score=85)
Antiy-AVLRiskWare[WebToolbar]/Win32.Linkury.cb
Endgamemalicious (high confidence)
ArcabitTrojan.Ulise.D18150
ZoneAlarmnot-a-virus:AdWare.Win64.Linkury.t
MicrosoftPUA:Win32/Linkury
Acronissuspicious
McAfeeAdware-Linkury
VBA32Adware.Linkury
MalwarebytesAdware.Linkury
PandaTrj/CI.A
RisingPUF.Linkury!8.14B (RDMK:cmRtazpP+73fpfXvA+4I1lqM+rZU)
IkarusPUA.Linkury
MaxSecureWin.MxResIcn.Heur.Gen
FortinetW32/AGEN.1017881!tr
AVGWin32:Adware-gen [Adw]
CrowdStrikewin/malicious_confidence_90% (D)
Qihoo-360HEUR/QVM41.1.18EA.Malware.Gen

How to remove Trojan.ScriptKD.3787?

Trojan.ScriptKD.3787 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment