Trojan

Trojan.Waski.S28288290 malicious file

Malware Removal

The Trojan.Waski.S28288290 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Waski.S28288290 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Authenticode signature is invalid

How to determine Trojan.Waski.S28288290?


File Info:

name: 7DF53E07267B5D3A5CDD.mlw
path: /opt/CAPEv2/storage/binaries/b17335fdc7d39a08de3a1f00938adfa60e8ab29c200b786c2a8201e340c0d2e4
crc32: 7E08C66F
md5: 7df53e07267b5d3a5cdd249c9755f2c0
sha1: 23b0e74e9eb2fcc974746c176eae0e5937fd4745
sha256: b17335fdc7d39a08de3a1f00938adfa60e8ab29c200b786c2a8201e340c0d2e4
sha512: 1542aa16b2ae1ca569d5f2d003a9516ee9fd8bbd6419a48425379e50d8959e0b416551467fb5e419a4efde890b650a52de485aad46f7b4b6947c021542beb84d
ssdeep: 384:kK1MluQWRREHZlgbPpiimrNcPxxGHz/YKyh6o:kK1MghRSlkhiim5qx8H8KkJ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1EB82D03C9ED55576E3BBCAB6C9F645CBF925B42339029C0E40DB43810823F97ADA191E
sha3_384: 7bb7a8227d5b3a5cee4b4e2f0ed115d473b4f92306a936d0278524b00debda76b1fc35549d2d7d90d6cf33a72e97d11c
ep_bytes: 81ec3008000053555633db578beb5389
timestamp: 2014-05-15 13:24:22

Version Info:

0: [No Data]

Trojan.Waski.S28288290 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Waski.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Ppatre.Gen.1
FireEyeGeneric.mg.7df53e07267b5d3a
CAT-QuickHealTrojan.Waski.S28288290
SkyhighBehavesLike.Win32.Generic.lz
McAfeeArtemis!7DF53E07267B
Cylanceunsafe
SangforTrojan.Win32.Save.a
AlibabaMalware:Win32/km_2c98.None
CrowdStrikewin/malicious_confidence_100% (D)
VirITTrojan.Win32.Upatre.BX
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32Win32/TrojanDownloader.Waski.E
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Packed.Upatre-9982428-0
KasperskyUDS:Trojan.Win32.Generic
BitDefenderTrojan.Ppatre.Gen.1
NANO-AntivirusTrojan.Win32.Waski.jueqyd
AvastWin32:TrojanX-gen [Trj]
TencentTrojan-Downloader.Win32.Upatre.ht
EmsisoftTrojan.Ppatre.Gen.1 (B)
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.DownLoader.origin
ZillyaDownloader.Waski.Win32.59499
Trapminemalicious.moderate.ml.score
SophosMal/EncPk-ACO
SentinelOneStatic AI – Malicious PE
JiangminTrojanDownloader.Upatre.aofg
VaristW32/Upatre.PK.gen!Eldorado
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Win32.Waski.a
Kingsoftmalware.kb.a.1000
MicrosoftTrojanDownloader:Win32/Waski.AW!MTB
ArcabitTrojan.Ppatre.Gen.1
ZoneAlarmUDS:Trojan.Win32.Generic
GDataWin32.Trojan-Downloader.Upatre.BJ
GoogleDetected
AhnLab-V3Trojan/Win.DownLoader.R567662
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.36744.buY@aeIRmDbi
ALYacTrojan.Ppatre.Gen.1
MAXmalware (ai score=80)
VBA32SScope.Trojan-Downloader.1454
MalwarebytesWaski.Trojan.Downloader.DDS
PandaTrj/Genetic.gen
RisingDownloader.Waski!8.184 (TFE:2:DeqlpRkc9eH)
YandexTrojan.GenAsa!zfalv5UzsQI
IkarusTrojan-Downloader.Win32.Waski
MaxSecureTrojan.Upatre.Gen
FortinetW32/EncPk.ACO!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Trojan.Waski.S28288290?

Trojan.Waski.S28288290 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment