Trojan

Trojan.Win32.Scar.riar removal guide

Malware Removal

The Trojan.Win32.Scar.riar is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Scar.riar virus can do?

  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Russian
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.Win32.Scar.riar?


File Info:

crc32: 9C4544F4
md5: 504ed0baaf86e58601a123727bed0600
name: 504ED0BAAF86E58601A123727BED0600.mlw
sha1: 4211b038864ffc5742d4cb9f64447d877075e867
sha256: 9cd22fe3b2d693eec7536a104215785c0be7bab05fb74538a89818018e656d4c
sha512: 819295a6a8d7395b4e6bcefedc215c60b5d78f7262e7c0e1d7f6f9e1d9df18b9d10537e0826921579872019372def81a9364e11749ef782c9e1f95c72d00200d
ssdeep: 6144:vZABbWqsE/Ao+mv8Qv0LVmwq4FU0fNoy626H6nOIY2V1Yl:RANwRo+mv8QD4+0V1626H6nOq+
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: By Yousef & Damasgate
FileDescription: Delete Temp Automatic 1 Installation
FileVersion: 1
Comments:
CompanyName: By Yousef & Damasgate
Translation: 0x0409 0x04e4

Trojan.Win32.Scar.riar also known as:

BkavW32.AIDetect.malware2
CynetMalicious (score: 100)
CrowdStrikewin/malicious_confidence_60% (W)
SymantecML.Attribute.HighConfidence
APEXMalicious
KasperskyTrojan.Win32.Scar.riar
AlibabaTrojan:Win32/Jenxcus.dcbf3d8a
SophosML/PE-A
McAfee-GW-EditionBehavesLike.Win32.BadFile.dc
SentinelOneStatic AI – Suspicious PE
eGambitUnsafe.AI_Score_99%
AegisLabTrojan.Win32.Scar.4!c
McAfeeArtemis!504ED0BAAF86
IkarusWorm.VBS.Jenxcus
MaxSecureTrojan-Ransom.Win32.Crypmod.zfq

How to remove Trojan.Win32.Scar.riar?

Trojan.Win32.Scar.riar removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment