Trojan

Trojan.Win32.Scar.qocu removal guide

Malware Removal

The Trojan.Win32.Scar.qocu is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Scar.qocu virus can do?

  • Injection (inter-process)
  • Uses Windows utilities for basic functionality
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • A potential decoy document was displayed to the user
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Harvests information related to installed mail clients
  • Anomalous binary characteristics

How to determine Trojan.Win32.Scar.qocu?


File Info:

crc32: CE7E32EF
md5: db68b050e6e87470792814c753253257
name: DB68B050E6E87470792814C753253257.mlw
sha1: 6f3f9e545966e937e9cebf39ab2565edf3b53761
sha256: d8b880309d7f1205448e20bd06f740c1ee3681c5db0f18e8071bfc74cb8f9d01
sha512: 2db3d8268363a561e186aa4658cdf9e77429663ca54c3fefb657a0a756c2e9acca90751f6af03bf08b167d7606f3f235d3f95f1dc8d371d4c1f23c027620b413
ssdeep: 768:xBQKkYj/wu0YYwa1gsm6PBjvJOSJAzfJVLNX68T:IKks/Y5Jmo/JAVVLY8T
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2002-2003 Easy Systems Japan Ltd.
InternalName: ezSP_Px
FileVersion: 4, 0, 0, 0
CompanyName: Easy Systems Japan Ltd.
PrivateBuild: 4000
LegalTrademarks:
Comments: Drag'n Drop CD+DVD4
ProductName: Drag'n Drop CD+DVD4
SpecialBuild: 4000
ProductVersion: 4, 0, 0, 0
FileDescription: ezSP_Px
OriginalFilename: ezSP_Px.exe
Translation: 0x0000 0x04b0

Trojan.Win32.Scar.qocu also known as:

LionicTrojan.Win32.Scar.4!c
DrWebTrojan.MulDrop7.57466
ALYacTrojan.GenericKD.37675952
SangforTrojan.Win32.Scar.qocu
BitDefenderTrojan.GenericKD.37675952
SymantecTrojan.Gen.MBT
KasperskyTrojan.Win32.Scar.qocu
AlibabaTrojan:Win32/Generic.94c07203
NANO-AntivirusTrojan.Win32.Scar.ewtjnc
ViRobotTrojan.Win32.Z.Scar.45056
MicroWorld-eScanTrojan.GenericKD.37675952
TencentWin32.Trojan.Scar.Wsts
Ad-AwareTrojan.GenericKD.37675952
SophosMal/Generic-S
ComodoMalware@#385z0v8nksxkn
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionArtemis!Trojan
FireEyeTrojan.GenericKD.37675952
EmsisoftTrojan.GenericKD.37675952 (B)
Antiy-AVLTrojan/Generic.ASMalwS.23EE235
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataTrojan.GenericKD.37675952
AhnLab-V3Trojan/Win32.Scar.C2577354
McAfeeArtemis!DB68B050E6E8
MAXmalware (ai score=88)
VBA32Trojan.Scar
FortinetGenerik.RXCEZX!tr
Paloaltogeneric.ml

How to remove Trojan.Win32.Scar.qocu?

Trojan.Win32.Scar.qocu removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment