Trojan

TrojanDownloader:Win32/Waski.SIBC!MTB removal instruction

Malware Removal

The TrojanDownloader:Win32/Waski.SIBC!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:Win32/Waski.SIBC!MTB virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • A process attempted to delay the analysis task by a long amount of time.
  • Anomalous binary characteristics

Related domains:

butlesuh.ru

How to determine TrojanDownloader:Win32/Waski.SIBC!MTB?


File Info:

crc32: 1F8E31C0
md5: d4e2cd5275c3371df141b0eab3501916
name: D4E2CD5275C3371DF141B0EAB3501916.mlw
sha1: 034ac8f5f1b699542550e5effbedb56d6db80429
sha256: 1e3913814928cd173825d5d91578b085e6592271444eed4bcd8303a7acfef06a
sha512: 55f9bb21aff0a3304843673f2a171c347268ef28e0405585f8956c03bfff2c866342a638867b59c9828145b5b7225c0f48fcda091ca63b03f61dc0a6d8da7fa5
ssdeep: 384:bWN+FexfFsXdA3h4OQIOxFurxyhOdyfnN+1:aN0exfKXdshV/6Fvwyf
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

TrojanDownloader:Win32/Waski.SIBC!MTB also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 00434f5a1 )
LionicTrojan.Win32.Generic.lmka
Elasticmalicious (high confidence)
DrWebTrojan.Packed.196
CynetMalicious (score: 100)
ALYacTrojan.VIZ.Gen.1
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 00434f5a1 )
Cybereasonmalicious.275c33
BaiduWin32.Trojan.Kryptik.fy
CyrenW32/SuspPack.EX.gen!Eldorado
SymantecPacked.Generic.402
ESET-NOD32a variant of Win32/Kryptik.AYSP
APEXMalicious
AvastWin32:Kryptik-LJA [Trj]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.VIZ.Gen.1
NANO-AntivirusTrojan.Win32.ZBot.bpvhbd
MicroWorld-eScanTrojan.VIZ.Gen.1
TencentWin32.Trojan.Spy.Wtdi
Ad-AwareTrojan.VIZ.Gen.1
SophosML/PE-A + Mal/FakeAV-OY
ComodoTrojWare.Win32.Kryptik.AYL@4wdu8z
BitDefenderThetaGen:NN.ZexaF.34266.cqW@aiOf!1ci
VIPRETrojan.Win32.Winwebsec.mdc (v)
TrendMicroTROJ_FAKEAV.SM0A
McAfee-GW-EditionBehavesLike.Win32.Generic.nz
FireEyeGeneric.mg.d4e2cd5275c3371d
EmsisoftTrojan.VIZ.Gen.1 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Spy.Zbot.EB.315
eGambitUnsafe.AI_Score_98%
Antiy-AVLTrojan/Generic.ASMalwS.87C724
MicrosoftTrojanDownloader:Win32/Waski.SIBC!MTB
SUPERAntiSpywareTrojan.Agent/Gen-Multicon
GDataTrojan.VIZ.Gen.1
AhnLab-V3Trojan/Win32.Tepfer.R60729
Acronissuspicious
McAfeeRansom-FBMX!D4E2CD5275C3
MAXmalware (ai score=100)
VBA32Heur.Trojan.Hlux
PandaGeneric Malware
TrendMicro-HouseCallTROJ_FAKEAV.SM0A
RisingTrojan.Generic@ML.100 (RDML:ueO9QtOgqeOePIieLPr6Ag)
YandexTrojan.GenAsa!wpapd0PyVhg
IkarusTrojan.VIZ
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.X!tr
AVGWin32:Kryptik-LJA [Trj]
Paloaltogeneric.ml

How to remove TrojanDownloader:Win32/Waski.SIBC!MTB?

TrojanDownloader:Win32/Waski.SIBC!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment