Trojan

About “Trojan.Win32.Scar.qnxt” infection

Malware Removal

The Trojan.Win32.Scar.qnxt is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Scar.qnxt virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself

How to determine Trojan.Win32.Scar.qnxt?


File Info:

crc32: 6676CC6F
md5: b5fdf585f5916c96efc0de0f5e6f1ea2
name: B5FDF585F5916C96EFC0DE0F5E6F1EA2.mlw
sha1: 7331cfa5a46e0f6312170596c659dacad854f1eb
sha256: 30284378db7704e440ca7949ec43454ad7240a4457f9b3c5bb58da34994cb994
sha512: 558e19cde923a7136ca36d3007bfef5b59f3f7de5b98f7870a2086014b94ed89aadc7d3c11b571ad2765bc818e49b3e09af65608a5c8c5d4f4a4f54a79768e8c
ssdeep: 6144:cwsBPlbeh7Z2P1r09naWLEcGHkDLsrJnldDNWhbl+7TwHgv6q3CQANXjqK+ov:cwXW1r0AWIckkouFl7Hk1rGzqK+ov
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2017, tyutyiu
FileVersion: 11.0.0.1
ProductVersion: 11.0.0.1
Translation: 0x0809 0x04b0

Trojan.Win32.Scar.qnxt also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00522cf21 )
LionicTrojan.Win32.Scar.4!c
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop7.56789
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Chapak.ZZ6
ALYacGen:Heur.Mint.Titirez.Ju0@aKAtJag
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojan:Win32/Gandcrab.cd73c5e9
K7GWTrojan ( 00522cf21 )
Cybereasonmalicious.5f5916
SymantecPacked.Generic.525
ESET-NOD32a variant of Win32/Kryptik.HHLN
APEXMalicious
AvastFileRepMalware
KasperskyTrojan.Win32.Scar.qnxt
BitDefenderGen:Heur.Mint.Titirez.Ju0@aKAtJag
NANO-AntivirusTrojan.Win32.Scar.ewprfh
MicroWorld-eScanGen:Heur.Mint.Titirez.Ju0@aKAtJag
TencentWin32.Trojan.Scar.Piaf
Ad-AwareGen:Heur.Mint.Titirez.Ju0@aKAtJag
SophosMal/Generic-S + Mal/GandCrab-D
ComodoMalware@#1x19a14bc52hq
BitDefenderThetaGen:NN.ZexaF.34142.Ju0@aKAtJag
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_HPGANDCRAB.SMONT
McAfee-GW-EditionBehavesLike.Win32.Generic.hc
FireEyeGeneric.mg.b5fdf585f5916c96
EmsisoftTrojan-Ransom.GlobeImposter (A)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1106533
eGambitUnsafe.AI_Score_81%
Antiy-AVLTrojan/Generic.ASMalwS.23CD503
MicrosoftRansom:Win32/Gandcrab.SF!MTB
GDataGen:Heur.Mint.Titirez.Ju0@aKAtJag
AhnLab-V3Trojan/Win32.MalCrypted.R244796
Acronissuspicious
McAfeeTrojan-FOXL!B5FDF585F591
MAXmalware (ai score=99)
VBA32Trojan.Scar
MalwarebytesMachineLearning/Anomalous.95%
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom_HPGANDCRAB.SMONT
RisingTrojan.Generic@ML.99 (RDML:B6P54igy+JnddYyflgmiaQ)
YandexTrojan.GenAsa!ZVGAVRRdjhY
IkarusTrojan.Win32.Krypt
FortinetW32/Kryptik.FYNO!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Trojan.Win32.Scar.qnxt?

Trojan.Win32.Scar.qnxt removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment