Trojan

Trojan:Win32/Ymacco.AA08 removal guide

Malware Removal

The Trojan:Win32/Ymacco.AA08 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Ymacco.AA08 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Exhibits possible ransomware file modification behavior
  • Creates a hidden or system file
  • Anomalous binary characteristics

How to determine Trojan:Win32/Ymacco.AA08?


File Info:

crc32: 048EA784
md5: 24c2540e588585a4daf8b3fe1112a78d
name: rc.exe
sha1: d48b28ebb1a010eae20a10aa4d1d6c5a79ea6f96
sha256: 08fe7e61eafc062a5f50981fae0f578442cdfd31a00e2398389c8bea37485f02
sha512: d1add494d6d6e658126d7fbd35c9b1adfa54e0417125ff55d1ab9290fb0670ad97fa723e5764b6cc06082968f7b1267ebfccd53e9cbee112b0c9cface2021923
ssdeep: 12288:/q6ZMSNeFVGYR+HiZRQjcZC8gXrC363OTGgjglY8nRM:JG7FVzmiZ42C8gOKCV
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan:Win32/Ymacco.AA08 also known as:

FireEyeGeneric.mg.24c2540e588585a4
McAfeeGenericRXAA-AA!24C2540E5885
SangforMalware
K7AntiVirusTrojan ( 0056bb961 )
BitDefenderTrojan.GenericKD.34266237
K7GWTrojan ( 0056bb961 )
Cybereasonmalicious.bb1a01
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 85)
GDataTrojan.GenericKD.34266237
KasperskyUDS:DangerousObject.Multi.Generic
AlibabaTrojan:Win32/GenKryptik.12fa5dd0
AegisLabTrojan.Win32.Generic.4!c
MicroWorld-eScanTrojan.GenericKD.34266237
RisingBackdoor.Gafgyt!8.56E (CLOUD)
Ad-AwareTrojan.GenericKD.34266237
EmsisoftTrojan.GenericKD.34266237 (B)
F-SecureHeuristic.HEUR/AGEN.1104227
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R01FC0DH220
SophosMal/Generic-S
IkarusTrojan.Win32.Injector
CyrenW32/Trojan.BZMR-5321
AviraHEUR/AGEN.1104227
MAXmalware (ai score=100)
ArcabitTrojan.Generic.D20ADC7D
ZoneAlarmUDS:DangerousObject.Multi.Generic
MicrosoftTrojan:Win32/Ymacco.AA08
BitDefenderThetaGen:NN.ZelphiF.34144.aLX@aKgoX7oi
ALYacTrojan.GenericKD.34266237
MalwarebytesBackdoor.Remcos
ESET-NOD32a variant of Win32/Injector.EMVD
TrendMicro-HouseCallTROJ_GEN.R01FC0DH220
eGambitUnsafe.AI_Score_81%
FortinetW32/GenKryptik.EKLE!tr
WebrootW32.Malware.Gen
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_90% (W)
Qihoo-360Generic/Trojan.Generic.507

How to remove Trojan:Win32/Ymacco.AA08?

Trojan:Win32/Ymacco.AA08 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment