Trojan

Trojan.Win32.Scar.tacr removal guide

Malware Removal

The Trojan.Win32.Scar.tacr is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Scar.tacr virus can do?

  • A process attempted to delay the analysis task.
  • Attempts to connect to a dead IP:Port (7 unique times)
  • Drops a binary and executes it
  • Performs some HTTP requests
  • Executed a very long command line or script command which may be indicative of chained commands or obfuscation
  • Uses Windows utilities for basic functionality
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Attempts to modify proxy settings
  • Creates a copy of itself
  • Uses suspicious command line tools or Windows utilities

Related domains:

yip.su
apps.identrust.com
edgedl.me.gvt1.com
crl.identrust.com
r3.o.lencr.org
x1.c.lencr.org

How to determine Trojan.Win32.Scar.tacr?


File Info:

crc32: 5D3A5AE1
md5: 76738c9fcd5add3590e56f5368df709f
name: 76738C9FCD5ADD3590E56F5368DF709F.mlw
sha1: 392ea104bbf89f339d71d117767bf5daf8aa8110
sha256: 82aacf870cb05aacf4d34793edbe568b48dfe24b0881ea32133fa5e8e3b4f781
sha512: 707733d3bed3764cab16fbc0d45780b324e972cdcbb8d8dea04d63b66c12c2813aa38236500972ccb7daa71459c325229a8fa035f0a9d6c35c52b1cd81f10df7
ssdeep: 24576:RAHnh+eWsN3skA4RV1Hom2KXMmHaAvOF2t5:oh+ZkldoPK8YaAcg
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: autoconv.exe
FileVersion: 8.3.5.6
CompanyName: x41ax43bx438x435x43dx442x441x43ax438x435 x444x443x43dx43ax446x438x438 API x433x440x443x43fx43fx43ex432x43ex439 x43fx43ex43bx438x442x438x43ax438
Comments: fAwyMwtIDlpKSPvTleM5tpCggffZ9bF4orDdVfAaxdcPF1PT45TETzvW3F
ProductVersion: 8.3.5.6
FileDescription: Microsoft DirectMusic Wave
OriginalFilename: autoconv.exe
Translation: 0x0809 0x04b0

Trojan.Win32.Scar.tacr also known as:

LionicHacktool.Win32.Gamehack.3!e
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader35.5785
ALYacGen:Trojan.Heur.AutoIT.172u0@auOZaVmi
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/ClipBanker.7267fa6d
K7GWTrojan ( 700000111 )
K7AntiVirusTrojan ( 700000111 )
CyrenW32/Trojan.GEMW-3526
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/ClipBanker.HL
APEXMalicious
AvastWin32:Trojan-gen
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Scar.tacr
BitDefenderGen:Trojan.Heur.AutoIT.172u0@auOZaVmi
NANO-AntivirusTrojan.Win32.Scar.iapyfl
MicroWorld-eScanGen:Trojan.Heur.AutoIT.172u0@auOZaVmi
TencentWin32.Trojan.Scar.Ahol
Ad-AwareGen:Trojan.Heur.AutoIT.172u0@auOZaVmi
SophosGeneric ML PUA (PUA)
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.TrojanAitInject.ch
FireEyeGen:Trojan.Heur.AutoIT.172u0@auOZaVmi
EmsisoftGen:Trojan.Heur.AutoIT.172u0@auOZaVmi (B)
AviraHEUR/AGEN.1100133
eGambitUnsafe.AI_Score_95%
MicrosoftTrojan:Win32/Ymacco.AA5F
ArcabitTrojan.Heur.AutoIT.EDBCB5
GDataGen:Trojan.Heur.AutoIT.172u0@auOZaVmi
McAfeeArtemis!76738C9FCD5A
MAXmalware (ai score=81)
VBA32Trojan.Scar
MalwarebytesTrojan.ClipBanker
PandaTrj/CI.A
IkarusTrojan.Win32.Clipbanker
MaxSecureTrojan.Malware.12232.susgen
FortinetW32/Scar.HL!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
Qihoo-360Win32/Backdoor.Scar.HgIASRMA

How to remove Trojan.Win32.Scar.tacr?

Trojan.Win32.Scar.tacr removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment