Trojan

Trojan.Win32.Autoit.abkec removal tips

Malware Removal

The Trojan.Win32.Autoit.abkec is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Autoit.abkec virus can do?

  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Russian
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • The sample wrote data to the system hosts file.
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Win32.Autoit.abkec?


File Info:

crc32: 3EB36307
md5: 1cdd2eec6d2c21e85aa28a3a45551a2e
name: 1CDD2EEC6D2C21E85AA28A3A45551A2E.mlw
sha1: 3fc0d753fa5cb02aa6d230919e8abe06a4f97ad0
sha256: dfe7430dc52aed20398ddb960258d724a7976bdd4beb0bd55f84af8158a75098
sha512: 71e9629ed8c132c1f9b05e13c8fd3610b37cecb915108e9d32e088e2bd942fce4e0f50dbf8baa0ce88de53446a1f812da682c344fb7582c3eb7e52db25454f10
ssdeep: 49152:pAI+DFvwnnLawPCA8EAtu/7Wu/bs2azmgFFSVJFXK1WP:pAI+BvwnnLTPCRS/auA2fgFFuaoP
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Saneok
FileDescription: Block host 1,0,0,0 Installation
FileVersion: 1,0,0,0
Comments:
CompanyName: Saneok
Translation: 0x0409 0x04e4

Trojan.Win32.Autoit.abkec also known as:

BkavW32.AIDetect.malware2
DrWebTrojan.Hosts.37089
MicroWorld-eScanTrojan.GenericKD.30365551
FireEyeGeneric.mg.1cdd2eec6d2c21e8
McAfeeArtemis!1CDD2EEC6D2C
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Autoit.4!c
SangforTrojan.Win32.Skeeyah.A
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.30365551
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.c6d2c2
BitDefenderThetaGen:NN.ZexaF.34590.hmKfaeOTIfm
SymantecML.Attribute.HighConfidence
ESET-NOD32multiple detections
TrendMicro-HouseCallTROJ_GEN.R002C0DB521
AvastWin32:Malware-gen
KasperskyTrojan.Win32.Autoit.abkec
AlibabaTrojan:Win32/Tiggre.0e9f9878
NANO-AntivirusTrojan.Win32.Hosts.dzmwvz
ViRobotTrojan.Win32.Z.Symmi.1972872
TencentWin32.Trojan.Autoit.Eclh
SophosMal/Generic-R
ComodoMalware@#190clzjimy5e5
F-SecureTrojan.TR/AD.Fynloski.mlwap
TrendMicroTROJ_GEN.R002C0DB521
McAfee-GW-EditionBehavesLike.Win32.Dropper.tc
SentinelOneStatic AI – Suspicious PE
EmsisoftTrojan.GenericKD.30365551 (B)
IkarusTrojan.Win32.Cab
MaxSecureTrojan-Ransom.Win32.Crypmod.zfq
AviraTR/AD.Fynloski.mlwap
MicrosoftTrojan:Win32/Skeeyah.A!rfn
ArcabitTrojan.Generic.D15072DE
ZoneAlarmTrojan.Win32.Autoit.abkec
GDataTrojan.Generic.22049502
CynetMalicious (score: 100)
AhnLab-V3Spyware/Win32.KeyLogger.C110516
VBA32Trojan.Autoit
ALYacTrojan.Generic.22049502
MAXmalware (ai score=88)
MalwarebytesDarkComet.Backdoor.RAT.DDS
APEXMalicious
RisingHack.Win32.SpyWare.aa (CLOUD)
eGambitUnsafe.AI_Score_100%
FortinetW32/Autoit.A!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_70% (W)
Qihoo-360Win32/Trojan.821

How to remove Trojan.Win32.Autoit.abkec?

Trojan.Win32.Autoit.abkec removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment