Trojan

How to remove “Trojan.Win32.Yakes.wrez”?

Malware Removal

The Trojan.Win32.Yakes.wrez is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Yakes.wrez virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time

How to determine Trojan.Win32.Yakes.wrez?


File Info:

crc32: 6B5A5925
md5: d97472fea5b0cc7923000d37d2713fbe
name: D97472FEA5B0CC7923000D37D2713FBE.mlw
sha1: 67d46a83097647bc38c621d0391b7830722d2e58
sha256: 8c4a648b7fef1419a793f92ffc9f35f3163acf0892db541e543d21d43d675e69
sha512: 32d0528b291c32b52ffa3035a7e9ebb77e174472d6fee98b78821c475f3e6833bcf135e779273b8d3bedc0b6ef2f2d4c34639e994f6f963de14c434bc48a5605
ssdeep: 6144:GcX3/zpK6PnEHIzHP4UQsOQozFOKVEOtEQK3fsxIjXBo3wHkh5BtX:bXPTzvcsOyKVErQgBDH4/X
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9. All rights reserved. ReGen Software
FileVersion: 7.7.4.9
CompanyName: ReGen Software
LegalTrademarks: xa9. All rights reserved. ReGen Software
ProductName: Sqlaopcnt Rack
ProductVersion: 7.7.4.9
FileDescription: Tgglekeys Parametercollection Iaddinpstdeplymentactin Sollentuna Preprocessor
OriginalFilename: Sqlaopcnt Rack.exe
Translation: 0x0409 0x04b0

Trojan.Win32.Yakes.wrez also known as:

BkavW32.AIDetect.malware1
K7AntiVirusPassword-Stealer ( 0052f9a71 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.40301360
MalwarebytesMachineLearning/Anomalous.100%
ZillyaTrojan.Yakes.Win32.68874
AlibabaTrojanPSW:Win32/Yakes.87cab2cc
K7GWPassword-Stealer ( 0052f9a71 )
Cybereasonmalicious.ea5b0c
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/PSW.Delf.OSF
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Packer.MalwareCrypter-6620810-1
KasperskyTrojan.Win32.Yakes.wrez
BitDefenderTrojan.GenericKD.40301360
NANO-AntivirusTrojan.Win32.Yakes.ferxxq
MicroWorld-eScanTrojan.GenericKD.40301360
TencentWin32.Trojan.Yakes.Wsjs
Ad-AwareTrojan.GenericKD.40301360
SophosMal/Generic-S
ComodoMalware@#3lujhu1b28ygj
BitDefenderThetaGen:NN.ZexaF.34670.yq0@aWx@3kci
McAfee-GW-EditionBehavesLike.Win32.Dropper.fh
FireEyeGeneric.mg.d97472fea5b0cc79
EmsisoftTrojan.GenericKD.40301360 (B)
JiangminTrojan.Yakes.aabo
AviraHEUR/AGEN.1109230
AegisLabTrojan.Win32.Yakes.4!c
ZoneAlarmTrojan.Win32.Yakes.wrez
GDataTrojan.GenericKD.40301360
McAfeeArtemis!D97472FEA5B0
MAXmalware (ai score=88)
VBA32BScope.Trojan.Yakes
PandaTrj/CI.A
RisingStealer.Delf!8.415 (CLOUD)
IkarusTrojan-Ransom.GandCrab
FortinetW32/GenKryptik.CDWX!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
Qihoo-360Win32/Botnet.Yakes.HgIASQ4A

How to remove Trojan.Win32.Yakes.wrez?

Trojan.Win32.Yakes.wrez removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment