Trojan

How to remove “Trojan.Win32.Ekstak.huth”?

Malware Removal

The Trojan.Win32.Ekstak.huth is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Ekstak.huth virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Queries information on disks, possibly for anti-virtualization
  • Detects the presence of Wine emulator via registry key
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Win32.Ekstak.huth?


File Info:

crc32: 285B9BF8
md5: 255f052949ff272e47686a294de3518f
name: 255F052949FF272E47686A294DE3518F.mlw
sha1: 53e05bf6bd4e750cf4e48105a73e1d9d83d07952
sha256: 02efa8a9767f59b41c1025a183f2d0cfd33756c423dbe4542396c361f1328d81
sha512: 285e94e0e4cb9e60128e314256f95fa314fae2f856f8f9edccb813a4795cd3be413d01eacad42d806510adc0b33e7f8d5fee532c43ae0b9af32f7e982f58ac85
ssdeep: 49152:5TrUxfRpws/EXHdF3+GajTnZDsPGn4QMjeMVwmFG:50xfR3/EXHdF3+GajFoPGnvM1G
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Win32.Ekstak.huth also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 00537eb21 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.InstallCube.3557
CynetMalicious (score: 100)
CAT-QuickHealPUA.KatushaPMF.S18181557
ALYacGen:Variant.Midie.80814
CylanceUnsafe
ZillyaTrojan.Ekstak.Win32.9883
AlibabaTrojan:Win32/Ekstak.4c056a57
K7GWTrojan ( 00537eb21 )
Cybereasonmalicious.949ff2
CyrenW32/S-9c72c5d2!Eldorado
SymantecPUA.ICLoader
ESET-NOD32a variant of Win32/Kryptik.GIZE
APEXMalicious
AvastWin32:ICLoader-X [Adw]
KasperskyTrojan.Win32.Ekstak.huth
BitDefenderGen:Variant.Midie.80814
NANO-AntivirusTrojan.Win32.Ekstak.fflrpf
MicroWorld-eScanGen:Variant.Midie.80814
TencentTrojan.Win32.Kryptik.gjbs
Ad-AwareGen:Variant.Midie.80814
SophosMal/Generic-R + Troj/Agent-AZKB
ComodoApplication.Win32.ICLoader.GS@84429a
BitDefenderThetaGen:NN.ZexaF.34266.@vW@a0SMySpi
McAfee-GW-EditionBehavesLike.Win32.Dropper.tc
FireEyeGeneric.mg.255f052949ff272e
EmsisoftGen:Variant.Midie.80814 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Ekstak.mli
AviraTR/ICLoader.Gen8
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASBOL.C50A
MicrosoftTrojan:Win32/Zpevdo!rfn
ArcabitTrojan.Midie.D13BAE
GDataWin32.Application.ICLoader.F
AhnLab-V3PUP/Win32.ICLoader.R232094
Acronissuspicious
McAfeePacked-FHK!255F052949FF
MAXmalware (ai score=95)
VBA32Trojan.Ekstak
MalwarebytesAdware.MegaDowl
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.AA23 (CLASSIC)
YandexTrojan.GenAsa!85GANs4y0ZI
IkarusPUA.ICLoader
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/CoinMiner.GYQC!tr
AVGWin32:ICLoader-X [Adw]
Paloaltogeneric.ml

How to remove Trojan.Win32.Ekstak.huth?

Trojan.Win32.Ekstak.huth removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment