Trojan

About “Trojan.SnakeRat” infection

Malware Removal

The Trojan.SnakeRat is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.SnakeRat virus can do?

  • Executable code extraction
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.SnakeRat?


File Info:

crc32: 1BE678A6
md5: ff65699609255332366bf5416fb38869
name: FF65699609255332366BF5416FB38869.mlw
sha1: 80e9e78f4c4be3daa256ba1e37235a7f159bd25a
sha256: 554711ee1f28155e4b972efff5299f79a054d31eeb18a5ce64f1617982eaeeae
sha512: 0e5a383e6332aee7c31c0ab60ad9d9d1e427dbe28836837a994b0ebac0eb2fe0b9741accfcb386000eb5fd19ac87adcbf86744802886b410c42887a277e9c262
ssdeep: 6144:Se6M+8OLhFZNEf3uuvJdcdZlFeA+SI14NhKxP9qMg4kBqvgHvdrLHdFppeNst:S+lO0fu0JdcBVrKh9AooFnDp4st
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: 2
FileVersion: 1.00
CompanyName: n
ProductName: CRUD_VB6_ACCESS
ProductVersion: 1.00
OriginalFilename: 2.exe

Trojan.SnakeRat also known as:

BkavW32.AIDetectGBM.malware.01
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.790825
FireEyeGeneric.mg.ff65699609255332
Qihoo-360HEUR/QVM03.0.651B.Malware.Gen
McAfeeArtemis!FF6569960925
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0053b3c61 )
BitDefenderGen:Variant.Razy.790825
K7GWTrojan ( 0053b3c61 )
Cybereasonmalicious.609255
CyrenW32/VBInject.AAG.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
KasperskyBackdoor.Win32.DarkKomet.ihyj
NANO-AntivirusTrojan.Win32.DarkKomet.hxkdpk
TencentWin32.Backdoor.Darkkomet.Egef
Ad-AwareGen:Variant.Razy.790825
SophosMal/Generic-S
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.Inject4.2148
ZillyaTrojan.Injector.Win32.777149
McAfee-GW-EditionBehavesLike.Win32.Malware.cm
EmsisoftGen:Variant.Razy.790825 (B)
SentinelOneStatic AI – Malicious PE
JiangminBackdoor.DarkKomet.kof
AviraTR/Dropper.Gen
MAXmalware (ai score=85)
Antiy-AVLTrojan[Backdoor]/Win32.DarkKomet
MicrosoftBackdoor:Win32/Fynloski
ArcabitTrojan.Razy.DC1129
ZoneAlarmBackdoor.Win32.DarkKomet.ihyj
GDataGen:Variant.Razy.790825
CynetMalicious (score: 100)
BitDefenderThetaGen:NN.ZevbaCO.34574.1m0@aawfNgki
ALYacGen:Variant.Razy.790825
VBA32Backdoor.DarkKomet
MalwarebytesTrojan.SnakeRat
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Injector.DZRT
TrendMicro-HouseCallTROJ_GEN.R06CH0CBJ21
RisingBackdoor.DarkKomet!8.13E (TFE:4:q5MqyO5BthF)
IkarusBackdoor.Win32.Ruskill
eGambitUnsafe.AI_Score_98%
FortinetW32/DZRT!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
MaxSecureRansomeware.CRAB.gen

How to remove Trojan.SnakeRat?

Trojan.SnakeRat removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment