Trojan

Trojan.Waski.S28288290 removal tips

Malware Removal

The Trojan.Waski.S28288290 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Waski.S28288290 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan.Waski.S28288290?


File Info:

name: 71C9F84C0DAC0F7C50B6.mlw
path: /opt/CAPEv2/storage/binaries/c5e3340b8825c0d1fe9c4908ef299e7de3413635ee02656090557ec1bfee6e0d
crc32: F6FDDAC4
md5: 71c9f84c0dac0f7c50b6babbd24547ab
sha1: fbc1a591a51c00e78f996bf8ff19fa8d2fcfc2f1
sha256: c5e3340b8825c0d1fe9c4908ef299e7de3413635ee02656090557ec1bfee6e0d
sha512: aff2fe62ab733c7397975a6737f52e6dc5632b14e85ccaf6298e61cb88191145afa18e439c88f59ed70917f9779c9eec69b7c1d42523a8a6b0d7ae453782cb59
ssdeep: 96:mB/XYtGvLGa5UKDcewAnQWRRUN2CqDOsVrin3tuktqd:mBPYtaxJQWRRsV0J
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T129E1813A6FD445A3F3B78EB085F244C5BBB87523370199AE50AB43865D13E819CA2B06
sha3_384: c32d8149d4aecdb93656cbe84f6cefda909640ea1c162064b09dee76225cff7190941fa9f8928c78816668b5db62cdad
ep_bytes: 81ec3408000053555633f65756897424
timestamp: 2014-05-14 15:26:08

Version Info:

0: [No Data]

Trojan.Waski.S28288290 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.lY5V
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Ppatre.Gen.1
ClamAVWin.Dropper.Upatre-9950882-0
FireEyeGeneric.mg.71c9f84c0dac0f7c
CAT-QuickHealTrojan.Waski.S28288290
McAfeeArtemis!71C9F84C0DAC
MalwarebytesGeneric.Malware.AI.DDS
VIPRETrojan.Ppatre.Gen.1
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan-Downloader ( 0055f33b1 )
AlibabaTrojan:Win32/Upatre.b686
K7GWTrojan-Downloader ( 0055f33b1 )
Cybereasonmalicious.1a51c0
VirITTrojan.Win32.Dwnldr.DMBJ
CyrenW32/S-47db96bb!Eldorado
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32Win32/TrojanDownloader.Waski.E
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Downloader.Win32.Upatre.gen
BitDefenderTrojan.Ppatre.Gen.1
NANO-AntivirusTrojan.Win32.DownLoad3.jparod
AvastWin32:Evo-gen [Trj]
TencentTrojan-Downloader.Win32.Upatre.we
SophosMal/EncPk-ACO
F-SecureHeuristic.HEUR/AGEN.1320027
DrWebTrojan.DownLoad3.33216
ZillyaDownloader.Waski.Win32.52668
TrendMicroTROJ_UPATRE.SM37
McAfee-GW-EditionBehavesLike.Win32.Generic.xt
Trapminemalicious.moderate.ml.score
EmsisoftTrojan.Ppatre.Gen.1 (B)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.11LLRO4
JiangminTrojanSpy.Zbot.ffhh
WebrootW32.Trojan.Dropper
AviraHEUR/AGEN.1320027
MAXmalware (ai score=86)
Antiy-AVLTrojan/Win32.Waski.a
Kingsoftmalware.kb.a.998
XcitiumTrojWare.Win32.TrojanDownloader.Waski.ADW@8mzp93
ArcabitTrojan.Ppatre.Gen.1
ZoneAlarmHEUR:Trojan-Downloader.Win32.Upatre.gen
MicrosoftTrojanDownloader:Win32/Upatre.AA
GoogleDetected
AhnLab-V3Trojan/Win32.Upatre.R158192
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.36738.auX@aKBigWei
ALYacTrojan.Ppatre.Gen.1
TACHYONTrojan-Spy/W32.ZBot.7058.B
VBA32SScope.Trojan-Downloader.1454
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_UPATRE.SM37
RisingDropper.Injector!8.DC (TFE:3:JrFJf4jCRlD)
YandexTrojan.GenAsa!zfalv5UzsQI
IkarusTrojan-Downloader.Win32.Waski
MaxSecureTrojan.Upatre.Gen
FortinetW32/Waski.B!tr.dldr
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Waski.S28288290?

Trojan.Waski.S28288290 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment