Trojan

Trojan:Win32/Racealer.DEA!MTB information

Malware Removal

The Trojan:Win32/Racealer.DEA!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Racealer.DEA!MTB virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Detects Sandboxie through the presence of a library
  • Detects Avast Antivirus through the presence of a library
  • Network activity detected but not expressed in API logs

How to determine Trojan:Win32/Racealer.DEA!MTB?


File Info:

crc32: C24269E0
md5: 3c65ba0ff361a278e5ae0182ecd72e51
name: svhost.exe
sha1: 7b52880ce3d6d2fc94edf15b702a08d19472e3cf
sha256: 72a31191cc6edc4732374c95ce761212796b67a973ed18f841caf725efd41e2c
sha512: 103de4bac3d26e6f13239459a08c8ad251c68a9b892f24662a7d034ee9f86ddf33a77ecdc99d786003fc2419b40da4db7cad6b807e83f07945f48fd600393367
ssdeep: 1536:e5jICUHa5hgYY78gJJZYLQI6nel15oq589RTQ3Y3kAFXQmRXihrSMqf6oQEttBl:MjV5hbY7FJzmLH589RTQN0yEhSg1Aaz
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: efhsjyrg.ufr
ProductionVersus: 1.0.6.23
Copyrights: Copyrighds (C) 2020, hjdk
FileV: 1.0.3
TranslationUsi: 0x0872 0x08ef

Trojan:Win32/Racealer.DEA!MTB also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKDZ.69143
FireEyeGeneric.mg.3c65ba0ff361a278
CAT-QuickHealTrojan.Caynamer
McAfeePacked-GAO!3C65BA0FF361
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 0056ba8b1 )
BitDefenderTrojan.GenericKDZ.69143
K7GWTrojan ( 0056ba8b1 )
Cybereasonmalicious.ce3d6d
Invinceaheuristic
F-ProtW32/Kryptik.BSD.gen!Eldorado
SymantecTrojan.Gen.2
APEXMalicious
AvastWin32:BankerX-gen [Trj]
ClamAVWin.Dropper.KPOT-9204617-0
KasperskyTrojan.Win32.Chapak.esii
AlibabaTrojan:Win32/Chapak.d8de7f01
NANO-AntivirusTrojan.Win32.Chapak.hpwxbo
AegisLabTrojan.Win32.Generic.lOIX
TencentWin32.Trojan.Chapak.Llrh
Ad-AwareTrojan.GenericKDZ.69143
EmsisoftTrojan.GenericKDZ.69143 (B)
DrWebTrojan.Siggen9.63857
TrendMicroTROJ_GEN.R057C0DGV20
SophosMal/Generic-S
SentinelOneDFI – Suspicious PE
CyrenW32/Kryptik.BSD.gen!Eldorado
AviraHEUR/AGEN.1136564
FortinetW32/Kryptik.HEZN!tr
ArcabitTrojan.Generic.D10E17
ZoneAlarmTrojan.Win32.Chapak.esii
MicrosoftTrojan:Win32/Racealer.DEA!MTB
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.MalPe.R346513
Acronissuspicious
ALYacTrojan.GenericKDZ.69143
VBA32Malware-Cryptor.Limpopo
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Kryptik.HFGX
TrendMicro-HouseCallTROJ_GEN.R057C0DGV20
RisingTrojan.Kryptik!1.C98B (CLOUD)
MAXmalware (ai score=85)
MaxSecureTrojan.Malware.73874398.susgen
GDataTrojan.GenericKDZ.69143
AVGWin32:BankerX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Win32/Trojan.ea3

How to remove Trojan:Win32/Racealer.DEA!MTB?

Trojan:Win32/Racealer.DEA!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment