Trojan

Should I remove “Trojan.Win32.Trickpak.ag”?

Malware Removal

The Trojan.Win32.Trickpak.ag is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Trickpak.ag virus can do?

  • Executable code extraction
  • Creates RWX memory
  • At least one IP Address, Domain, or File Name was found in a crypto call
  • Reads data out of its own binary image
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Win32.Trickpak.ag?


File Info:

crc32: 994D6D0E
md5: bb65e347ade994b3fa1dc705e8ef4b79
name: BB65E347ADE994B3FA1DC705E8EF4B79.mlw
sha1: 9e43a59f083548094dac7839a57b2bb8b52da01d
sha256: 80d953ef96dde009b29c5efc3163805d10d905220b036f9e43fa02bc39af2fef
sha512: 50a8d16d621c4c6299bae9fcf45907aaaaeaf1eb4e5c95e288ee1ad49012e17431bfa001b00b0e97be4fc9b5993b669833a459f85314e72c1dae22f24536d7dc
ssdeep: 6144:tQHW3DoP0QHWprreasugBGl0TaY4V4x/JUc5El1V0J3Tclf:tbDX4asuKGSmY4CxhUc5El1iZg
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: SpreadSheets
FileVersion: 1.00
CompanyName: Quercus
ProductName: SpreadSheets
ProductVersion: 1.00
FileDescription: Tickets for the Bole
OriginalFilename: SpreadSheets.exe

Trojan.Win32.Trickpak.ag also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.820175
FireEyeGeneric.mg.bb65e347ade994b3
Qihoo-360Generic/Trojan.6ae
McAfeeEmotet-FRN!BB65E347ADE9
CylanceUnsafe
K7AntiVirusTrojan ( 0057576c1 )
BitDefenderGen:Variant.Razy.820175
K7GWTrojan ( 0057576c1 )
CrowdStrikewin/malicious_confidence_80% (D)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.EZGV
APEXMalicious
KasperskyTrojan.Win32.Trickpak.ag
RisingTrojan.Kryptik!1.C606 (CLASSIC)
Ad-AwareGen:Variant.Razy.820175
EmsisoftTrojan.Agent (A)
F-SecureTrojan.TR/AD.TrickBot.kevpz
DrWebTrojan.Packed.140
McAfee-GW-EditionBehavesLike.Win32.Trickbot.jm
SophosML/PE-A
IkarusTrojan-Banker.TrickBot
JiangminTrojan.Trickpak.ag
AviraTR/AD.TrickBot.kevpz
ArcabitTrojan.Razy.DC83CF
ZoneAlarmTrojan.Win32.Trickpak.ag
GDataGen:Variant.Razy.820175
CynetMalicious (score: 90)
ALYacGen:Variant.Razy.820175
MAXmalware (ai score=89)
MalwarebytesTrojan.Injector
PandaTrj/GdSda.A
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_72%
FortinetW32/GenKryptik.EZGV!tr
AVGWin32:Trojan-gen
AvastWin32:Trojan-gen

How to remove Trojan.Win32.Trickpak.ag?

Trojan.Win32.Trickpak.ag removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment