Crack Trojan

Trojan:Win32/NTHack.FTP malicious file

Malware Removal

The Trojan:Win32/NTHack.FTP is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/NTHack.FTP virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan:Win32/NTHack.FTP?


File Info:

crc32: CF4FE299
md5: 98aa3de3d2a03b91157ab958c253bd5c
name: 98AA3DE3D2A03B91157AB958C253BD5C.mlw
sha1: 6d619ff10be52570b2deb8298f2ad26744a554be
sha256: 56f993982e1e37e34e73c31306124b7e36937ed9536c6ce5d8aa8e0b41e868eb
sha512: 682193250047bf1a1c495cd4dc20f60b7e1f7fd2adc2b37847797417447213c4e0e7f9b6d918651f7be2d15f7fa4ff0a9c26ef07b303af1a2e10882fd273f8f5
ssdeep: 49152:afrDAeWUIG/vmq91H4Z+OuzeFmKhtzr4wcZAFKMZRI87TvZQfO5E/tQiPhxE/e9:md1H0htzr4wKAFKyRI87TiG59iJ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan:Win32/NTHack.FTP also known as:

DrWebProgram.ServUServer.5205
ALYacDeepScan:Generic.ServU.E461825E
CylanceUnsafe
SangforSuspicious.Win32.ServU.E461825E
Cybereasonmalicious.3d2a03
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/ServU-Daemon potentially unsafe
AvastFileRepMalware
Kasperskynot-a-virus:Server-FTP.Win32.Serv-U.gen
BitDefenderDeepScan:Generic.ServU.E461825E
NANO-AntivirusRiskware.Win32.ServUServer.dkufgo
MicroWorld-eScanDeepScan:Generic.ServU.E461825E
Ad-AwareDeepScan:Generic.ServU.E461825E
SophosGeneric ML PUA (PUA)
ComodoBackdoor.Win32.ServU-based.A@hgrzg
VIPREServer-FTP.Win32.Serv-U.gen (not malicious)
McAfee-GW-EditionBehavesLike.Win32.Rootkit.th
FireEyeGeneric.mg.98aa3de3d2a03b91
EmsisoftDeepScan:Generic.ServU.E461825E (B)
AviraTR/ATRAPS.Gen
Antiy-AVLTrojan/Generic.ASMalwS.35D9E
MicrosoftTrojan:Win32/NTHack.FTP
ArcabitDeepScan:Generic.ServU.ED70C01E
GDataDeepScan:Generic.ServU.E461825E
AhnLab-V3Win-AppCare/ServU
McAfeeArtemis!98AA3DE3D2A0
MAXmalware (ai score=99)
MalwarebytesMalware.AI.3695097252
PandaApplication/ServUBased.A
YandexTrojan.Agent!HcH3VLITpNU
IkarusGeneric.ServU
MaxSecureRansomeware.GandCrypt.JZ
FortinetRiskware/Serv_U
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Trojan:Win32/NTHack.FTP?

Trojan:Win32/NTHack.FTP removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment