Trojan

Trojan:Win32/Obsidium!mclg removal

Malware Removal

The Trojan:Win32/Obsidium!mclg is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Obsidium!mclg virus can do?

  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine Trojan:Win32/Obsidium!mclg?


File Info:

crc32: 12CC7021
md5: d86bb04cb675408c139bd44103ff7aad
name: D86BB04CB675408C139BD44103FF7AAD.mlw
sha1: 85de39209b4e816a7e9426ad12c84dc7a4dcb1e2
sha256: b71c4154c3a24e84662f34e29f752dceeb82e91e4e47c0c516aec9f8e20d0f0d
sha512: c39a957d31d5d7f3e4f9eef547b5f297ed1e59d1ba742590d42b0c2ee3c691ec5cc3058d6a19e462dab688b5ddb5d23515d1d786863e67750d799745454f56e4
ssdeep: 6144:VqeghUBkTBYh/12EwJcnhXJZS/qa9lHXeHkpLqfWKKRWi+o1P/c3P+wqo3fOqq/M:V6mf2JYXJZSia9lHsk5QLKRz++P/c3Vv
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: xa9 2018 Empty Life. All rights reserved.
Assembly Version: 18.3.10.0
InternalName: RooCleaner.exe
FileVersion: 18.3.10.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: RooCleaner
ProductVersion: 18.3.10.0
FileDescription: RooCleaner
OriginalFilename: RooCleaner.exe

Trojan:Win32/Obsidium!mclg also known as:

BkavW32.AIDetect.malware1
K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaTrojan:Win32/Obsidium.0c58f1d6
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.09b4e8
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.Obsidium.BQ
ZonerProbably Heur.ExeHeaderH
APEXMalicious
AvastWin32:Malware-gen
KasperskyVHO:Exploit.Win32.ShellCode.gen
SophosML/PE-A + Mal/EncPk-ANL
BitDefenderThetaGen:NN.ZexaF.34236.wq3@aipK!7k
TrendMicroTROJ_GEN.R002C0PGB21
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.fc
FireEyeGeneric.mg.d86bb04cb675408c
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1141178
eGambitUnsafe.AI_Score_96%
MicrosoftTrojan:Win32/Obsidium!mclg
Acronissuspicious
McAfeeGeneric-FAWW!D86BB04CB675
VBA32TScope.Malware-Cryptor.SB
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0PGB21
RisingTrojan.Generic@ML.100 (RDMK:W4DqwFGSmwNFou/T0Q3/BA)
IkarusTrojan.Win32.Obsidium
FortinetW32/PossibleThreat
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan:Win32/Obsidium!mclg?

Trojan:Win32/Obsidium!mclg removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment