Trojan

TrojanDownloader.Bandit removal

Malware Removal

The TrojanDownloader.Bandit is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

What TrojanDownloader.Bandit virus can do?

  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine TrojanDownloader.Bandit?


File Info:

crc32: E25B5B75
md5: 690f4210136edf1fdffc5df710f49fc5
name: starticon2.exe
sha1: 2dc9707fab0c03ee122665c791717461b84c0edf
sha256: 34745abeba30e12a9dee88bcb7c3c9b119f8c21451a2d8ab2aec298c76b35616
sha512: bfe9a8d68d710e63ad7249c49b4e24bba64d3b8be1e615cd3e5fdbf3ea2a36e7eb92028bb50746ba69507b8d333d39efbbc648f754f83fa919df2a6fcad6866c
ssdeep: 12288:AHA57OXFeTH9QRBbaLaPwJUmjK+6Rc4KbZbCLCoS1pf9jZpo8NAJlyZsYoFwfxZ:TtsFeTH9YBdqUFRcLVbCOoQ1TtAhtu
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2019, ghjhfkh
InternalName: fyukfuyk.exe
FileVersion: 1.0.5.4
ProductVersion: 1.7.6
Translation: 0x0841 0x04c4

TrojanDownloader.Bandit also known as:

MicroWorld-eScanTrojan.GenericKD.32658329
McAfeeRDN/Generic.grp
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Zbot.m6l9
K7AntiVirusTrojan ( 0055a52b1 )
AlibabaTrojan:Win32/Agentb.5db791d8
K7GWTrojan ( 0055a52b1 )
Cybereasonmalicious.fab0c0
TrendMicroTROJ_GEN.R02DC0WJS19
F-ProtW32/Kryptik.API.gen!Eldorado
SymantecDownloader
ESET-NOD32a variant of Win32/Kryptik.GXQH
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Malware.Generic-7366725-0
KasperskyTrojan.Win32.Agentb.juiy
BitDefenderTrojan.GenericKD.32658329
NANO-AntivirusTrojan.Win32.Encoder.gevhek
RisingTrojan.Kryptik!1.BE74 (CLASSIC)
Ad-AwareTrojan.GenericKD.32658329
EmsisoftTrojan.GenericKD.32658329 (B)
F-SecureTrojan.TR/AD.InstaBot.bojqp
DrWebTrojan.Encoder.26996
ZillyaTrojan.Agent.Win32.1162950
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
FireEyeGeneric.mg.690f4210136edf1f
SophosMal/GandCrab-G
IkarusTrojan.Inject
CyrenW32/Trojan.MGWN-8516
JiangminTrojan.PSW.Azorult.enn
WebrootW32.Trojan.Gen
AviraTR/AD.InstaBot.bojqp
FortinetW32/GenKryptik.DVWO!tr
Antiy-AVLTrojan/Win32.Wacatac
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D1F25399
ZoneAlarmTrojan.Win32.Agentb.juiy
MicrosoftTrojan:Win32/Predator.PA!MTB
AhnLab-V3Trojan/Win32.MalPe.R295930
Acronissuspicious
VBA32TrojanDownloader.Bandit
ALYacTrojan.Ransom.Stop
MAXmalware (ai score=100)
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojan.Win32.SMOKELOAD.SMD2.hp
YandexTrojan.Agentb!qvzLWlnWyjQ
SentinelOneDFI – Malicious PE
MaxSecureTrojan.Malware.74657233.susgen
GDataTrojan.GenericKD.32658329
BitDefenderThetaGen:Trojan.Heur2.PPBB.3.0.Su0@dmzZNRba5d
AVGWin32:CrypterX-gen [Trj]
AvastWin32:CrypterX-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360HEUR/QVM10.2.C803.Malware.Gen

How to remove TrojanDownloader.Bandit?

TrojanDownloader.Bandit removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

1 Comment

  • los archivos infectados por este virus, han sido cifrados, existe algún software al momento que permita volver a recuperarlos ?

Leave a Comment