Trojan

About “Trojan:Win32/Ymacco.AA29” infection

Malware Removal

The Trojan:Win32/Ymacco.AA29 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Ymacco.AA29 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan:Win32/Ymacco.AA29?


File Info:

crc32: 0D218E63
md5: 28671893ec2a746eec7ecbd82b534487
name: upload_file
sha1: 203300f7ca773c343fae5549769cc4aaa1297628
sha256: 29230f5e9462a6f711e336795c0c699fead15a319b4097d761d6dec9452442ca
sha512: 4392c213c401d9ed1ec0885a66122f65ea84f51b3e513b22d65e142cbf553ac5aac6f3f163cae83df1a383e59ea80797ac54d9e24f01dde0c74796a8bb032fa1
ssdeep: 3072:AUBXTVUytYS03BDnk7x+KEikwPezNohosg7u145LTZCR7GQ26UND:AQUyq91c9Eik+DhoPJdNCR7vlU
type: PE32 executable (native) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan:Win32/Ymacco.AA29 also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Symmi.95706
FireEyeGeneric.mg.28671893ec2a746e
CAT-QuickHealTrojan.Generic
McAfeeGenericRXGU-CE!28671893EC2A
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Generic.4!c
SangforMalware
K7AntiVirusTrojan ( 0056413b1 )
BitDefenderGen:Variant.Symmi.95706
K7GWTrojan ( 0056413b1 )
Cybereasonmalicious.3ec2a7
TrendMicroTROJ_GEN.R002C0PHI20
CyrenW32/Darkshell.A.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/Packed.VMProtect.GD
TrendMicro-HouseCallTROJ_GEN.R002C0PHI20
Paloaltogeneric.ml
ClamAVWin.Malware.Agen-6856520-0
KasperskyHEUR:Trojan.Win32.Generic
AlibabaPacked:Win32/VMProtect.1218e498
NANO-AntivirusVirus.Win32.Gen.ccmw
ViRobotTrojan.Win32.Z.Agent.173056.SA
TencentWin32.Trojan.Gen.Hrfj
Ad-AwareGen:Variant.Symmi.95706
Comodo.UnclassifiedMalware@0
F-SecureTrojan.TR/Rootkit.Gen
DrWebBackDoor.Darkshell.549
ZillyaTrojan.VMProtect.Win32.33067
Invinceaheuristic
SentinelOneDFI – Suspicious PE
SophosMal/VMProtBad-A
APEXMalicious
JiangminTrojan.Generic.gcrsj
AviraTR/Rootkit.Gen
MAXmalware (ai score=83)
Antiy-AVLTrojan[Packed]/Win32.VMProtect
MicrosoftTrojan:Win32/Ymacco.AA29
ArcabitTrojan.Symmi.D175DA
SUPERAntiSpywareTrojan.Agent/Gen-Emotet
AhnLab-V3Malware/Gen.Generic.C2672487
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Symmi.95706
CynetMalicious (score: 100)
Acronissuspicious
VBA32Backdoor.Darkshell
ALYacGen:Variant.Symmi.95706
MalwarebytesTrojan.MalPack
RisingTrojan.Ditertag!8.F693 (TFE:5:Cw5ypQBjCqJ)
IkarusTrojan.Rootkit
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Generic.RXGI!tr
AVGWin32:Darkshell-A [Trj]
AvastWin32:Darkshell-A [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:Win32/Ymacco.AA29?

Trojan:Win32/Ymacco.AA29 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment