Trojan

Trojan.WacatacVMF.S13658887 information

Malware Removal

The Trojan.WacatacVMF.S13658887 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.WacatacVMF.S13658887 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Authenticode signature is invalid

How to determine Trojan.WacatacVMF.S13658887?


File Info:

name: BAE9A71F1CCA2753A567.mlw
path: /opt/CAPEv2/storage/binaries/ce30a0950b3cc44465cd451130bfee376ae4dcdd9108d13220abd06913ced5be
crc32: A0ABED5C
md5: bae9a71f1cca2753a56780dec95272c1
sha1: a825469bf148b3764229231dfc1144eec5781212
sha256: ce30a0950b3cc44465cd451130bfee376ae4dcdd9108d13220abd06913ced5be
sha512: 8749cdf453332210d7b305b9199c96e4488f0b1145ef7081cc46ba24fed749c60b8c41b3cdb2276635ad78816bac28caf8a3beb4970d85b07ad15d6b78497e16
ssdeep: 12288:WCHlNYxyEbyGNKKc2jyaFn1jxW6wvY6xoWnKS+5D:WX+4KN2jyaFnvRwvtxoWnKS
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C1F4F82AB3E0E336E5A28AB129251764446DBD3414B8D84BF3826F1D77F2ED3D526313
sha3_384: 1bec5c4a0c2597d12d36d3d451201d056781f28d5702e43aa40fda82acaa8da752e94aa104667e8a1f799d81391aeae9
ep_bytes: 68fc634000e8eeffffff000070000000
timestamp: 2016-07-30 14:08:07

Version Info:

CompanyName: Orlando's VBA and Excel Site
FileDescription: Excel application converted by XLtoEXE utility.
LegalCopyright: Copyright © 2003-2016 Fco Orlando Magalhaes Filho. All rights reserved.
LegalTrademarks: Microsoft® Excel® is a registered trademark of Microsoft Corporation.
ProductName: XLtoEXE
FileVersion: 2.00.0006
ProductVersion: 2.00.0006
InternalName: XLtoEXE
OriginalFilename: XLtoEXE.exe
Translation: 0x0409 0x04b0

Trojan.WacatacVMF.S13658887 also known as:

CAT-QuickHealTrojan.WacatacVMF.S13658887
APEXMalicious
RisingMalware.FakeXLS/ICON!1.6AC3 (CLASSIC)

How to remove Trojan.WacatacVMF.S13658887?

Trojan.WacatacVMF.S13658887 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment