Trojan

Trojan:Win32/Tracur!C (file analysis)

Malware Removal

The Trojan:Win32/Tracur!C is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Tracur!C virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan:Win32/Tracur!C?


File Info:

name: FFE46D38BBC5DBA642B7.mlw
path: /opt/CAPEv2/storage/binaries/96e80766cb73c454dc2c636e8df1bfce2fca6ca3d8b928957ad1ef0af867d9e3
crc32: 137A6495
md5: ffe46d38bbc5dba642b701d96cfa5895
sha1: 3663039c82828ba08dad16b7cfc548277a8d8c8e
sha256: 96e80766cb73c454dc2c636e8df1bfce2fca6ca3d8b928957ad1ef0af867d9e3
sha512: 22a8844af1bc9d91e3be612e80d339c3cd89f58a4b2a5bde96b33b1fb12a147f0da212a4965dfa22a0cc157e97a6395020cf26010ae99b249a7cbcd4c0b982df
ssdeep: 3072:RXT4RcrIHujrC9y8YfO/NSGbmn7ycjYyxz7vsHhdJ88QGMwR1D:RXaOjr8y8WOHbmGaYyFkH/JS01
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19C048E439722CAE9D140AE3CB30E4E7224F568001B99ACCB75F689D9631CBC3755AB7D
sha3_384: a4a36998927f8a68bfdf53506c8d42ea6013ffef1e582c676f962ab7ee9ebf90cd3a396e8e191c2a30a507a2a4d87bcc
ep_bytes: 83bc2420010000066a04680030000072
timestamp: 2009-06-30 11:02:08

Version Info:

0: [No Data]

Trojan:Win32/Tracur!C also known as:

BkavW32.AIDetect.malware1
CynetMalicious (score: 100)
FireEyeGeneric.mg.ffe46d38bbc5dba6
McAfeeArtemis!FFE46D38BBC5
CylanceUnsafe
SangforTrojan.Win32.Save.a
Cybereasonmalicious.c82828
VirITTrojan.Win32.Agent2.BWXU
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
Paloaltogeneric.ml
AlibabaTrojan:Win32/Tracur.b21a4c82
AvastWin32:Tracur [Trj]
RisingTrojan.Generic@AI.94 (RDML:t99MzJuuJcJn0WGoa4JRdg)
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.cc
SentinelOneStatic AI – Malicious PE
Trapminemalicious.high.ml.score
SophosML/PE-A
APEXMalicious
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Generic.ASMalwS.2536
MicrosoftTrojan:Win32/Tracur.gen!C
Acronissuspicious
MalwarebytesMalware.Heuristic.1001
IkarusTrojan.Dropper
MaxSecureTrojan.Malware.74390596.susgen
FortinetW32/Agent.PDY!tr
AVGWin32:Tracur [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:Win32/Tracur!C?

Trojan:Win32/Tracur!C removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment