Trojan

Should I remove “Trojan:Win32/Tracur.AZ”?

Malware Removal

The Trojan:Win32/Tracur.AZ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Tracur.AZ virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Enumerates running processes
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Installs itself for autorun at Windows startup
  • Collects information to fingerprint the system

How to determine Trojan:Win32/Tracur.AZ?


File Info:

name: A7A5A668D9239F4C8AC5.mlw
path: /opt/CAPEv2/storage/binaries/0a15da78d4a6cc97a9a3462ef4fdef1097619842a7ca77e3910d61c3dcbfc1ac
crc32: 77E3AEB8
md5: a7a5a668d9239f4c8ac5dea9ee8c07f2
sha1: e44e0e073bb768df85fbbf261feb338e87817f35
sha256: 0a15da78d4a6cc97a9a3462ef4fdef1097619842a7ca77e3910d61c3dcbfc1ac
sha512: f3665b53bc3412eef844ef4f4b7b2045f255deacbd21c5a1552e31c9ecf88a3c1b8db7d0c9d2af7f79c1a3ae68ae0aa7d4adaf0eacf4180bb44ada0b2336290f
ssdeep: 3072:DQIURTXJ+MlPnAaOJmiNJ0XIbo0WIJ+2o61S1IGhAmOznaR5g3pMvpd:Ds9xnOdNigoTESqQMzaRe3pMRd
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C304124775C188B7D0936F3226F2977FE77EE341166D25FB43620F655A12082EA35702
sha3_384: 47eeee6c08374909e982c09294591161c3bc73a7a0c1838f2536356b428e1cf544d202671b41ee3e0492e1102992c546
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-12-05 22:50:46

Version Info:

0: [No Data]

Trojan:Win32/Tracur.AZ also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Genome.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanDropped:Trojan.Generic.KDV.711671
FireEyeGeneric.mg.a7a5a668d9239f4c
CAT-QuickHealTrojan.Tracur.Gen
McAfeeArtemis!A7A5A668D923
CylanceUnsafe
SangforTrojan.Win32.KDV.fr711671
K7AntiVirusRiskware ( 0015e4f01 )
K7GWRiskware ( 0015e4f01 )
VirITTrojan.Win32.Crypt_s.LB
CyrenW32/Trojan.DBEP-4813
SymantecTrojan Horse
ESET-NOD32Win32/Boaxxe.G
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan.Win32.Genome.sbfo
BitDefenderDropped:Trojan.Generic.KDV.711671
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
TencentWin32.Trojan.Genome.Lnxt
Ad-AwareDropped:Trojan.Generic.KDV.711671
SophosTroj/Agent-XNW
ComodoSuspicious@#31pmhxyqozosh
DrWebTrojan.Click2.36992
TrendMicroTROJ_DROPPER.XFP
McAfee-GW-EditionGeneric.mp
Trapminemalicious.moderate.ml.score
EmsisoftDropped:Trojan.Generic.KDV.711671 (B)
SentinelOneStatic AI – Suspicious PE
GDataWin32.Trojan.Agent.GMIY37
JiangminTrojan/Generic.arikr
WebrootTrojan.Dropper.Gen
AviraHEUR/AGEN.1233715
MAXmalware (ai score=99)
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojan:Win32/Tracur.AZ
CynetMalicious (score: 100)
BitDefenderThetaGen:NN.ZedlaF.34742.zu8@aa59FAgi
ALYacDropped:Trojan.Generic.KDV.711671
VBA32Trojan.Wacatac
MalwarebytesTrojan.Happili
PandaGeneric Malware
TrendMicro-HouseCallTROJ_DROPPER.XFP
RisingTrojan.Generic@AI.90 (RDML:eF/bjv4BFaaRaFRyvfBfkg)
YandexTrojan.Genome!/YW6Luoh0n0
IkarusTrojan.Win32.Genome
FortinetW32/Kryptik.AMNR!tr
AVGWin32:Malware-gen
Cybereasonmalicious.8d9239
AvastWin32:Malware-gen

How to remove Trojan:Win32/Tracur.AZ?

Trojan:Win32/Tracur.AZ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment