Trojan

Trojan.Waski information

Malware Removal

The Trojan.Waski is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Waski virus can do?

  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Network activity detected but not expressed in API logs
  • Creates a slightly modified copy of itself
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Waski?


File Info:

crc32: 2B757372
md5: a7656569fdf7e6058f317218511d9237
name: A7656569FDF7E6058F317218511D9237.mlw
sha1: af5d98cdc623a6c7f5ade526c7195e05ab4a8113
sha256: 8e900731e8b258c23e18248f021ad2f246a1f40250a1e5708f6766fd67dbc106
sha512: dada14e80c9fe7c61df0a7accf6d47d2f64d5348284a334b5d9cf4612c8584532768e755daedfcefb65ef757c934ab2224f1262bc380bca3e2cac7b30cd21bc9
ssdeep: 192:HymTSrQWRIcSvK0OmoarauG+k7v1dlD/Wjbw7BIqLKAcv4jvwBIA1uG:HxTsQWRIcS1forPBnDfrKTEOdf
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Waski also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan-Downloader ( 0048f6391 )
LionicTrojan.Win32.Zbot.tqYP
Elasticmalicious (high confidence)
DrWebTrojan.DownLoad3.28161
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Waski
ALYacTrojan.Ppatre.Gen.1
CylanceUnsafe
ZillyaDownloader.SmallGen.Win32.2
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaMalware:Win32/km_2c98.None
K7GWTrojan-Downloader ( 0048f6391 )
Cybereasonmalicious.9fdf7e
CyrenW32/S-654ac031!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/TrojanDownloader.Waski.A
APEXMalicious
AvastWin32:Waski-A [Trj]
ClamAVWin.Malware.Upatre-7004553-0
KasperskyHEUR:Trojan-Spy.Win32.Zbot.vho
BitDefenderTrojan.Ppatre.Gen.1
NANO-AntivirusTrojan.Win32.DownLoad.cqofta
MicroWorld-eScanTrojan.Ppatre.Gen.1
TencentMalware.Win32.Gencirc.10b0ccab
Ad-AwareTrojan.Ppatre.Gen.1
SophosML/PE-A + Mal/EncPk-ACO
ComodoTrojWare.Win32.TrojanDownloader.Waski.AQ@7t0jau
BitDefenderThetaGen:NN.ZexaF.34294.auX@ayIbTQni
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_UPATRE.SM37
McAfee-GW-EditionBehavesLike.Win32.Generic.lz
FireEyeGeneric.mg.a7656569fdf7e605
EmsisoftTrojan.Ppatre.Gen.1 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanDownloader.Upatre.aerk
AviraTR/Dldr.Waski.gzsbj
Antiy-AVLTrojan/Generic.ASMalwS.698385
MicrosoftTrojan:Win32/Waski.A!MTB
GDataWin32.Trojan-Downloader.Upatre.BJ
AhnLab-V3Trojan/Win32.Upatre.R282018
Acronissuspicious
McAfeeDownloader-FML!A7656569FDF7
MAXmalware (ai score=80)
VBA32Trojan.Agent
MalwarebytesTrojan.Upatre.Generic
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_UPATRE.SM37
RisingTrojan.Generic@ML.100 (RDML:efYWuR3S14p+jkAfQXiWUw)
YandexTrojan.GenAsa!Iaz+na8i5c0
IkarusTrojan-Downloader.Win32.Upatre
MaxSecureTrojan.Upatre.Gen
FortinetW32/Waski.A!tr
AVGWin32:Waski-A [Trj]
Paloaltogeneric.ml

How to remove Trojan.Waski?

Trojan.Waski removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment