Trojan

Trojan:Win32/Ymacco.AA2A removal guide

Malware Removal

The Trojan:Win32/Ymacco.AA2A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Ymacco.AA2A virus can do?

  • The binary likely contains encrypted or compressed data.

How to determine Trojan:Win32/Ymacco.AA2A?


File Info:

crc32: 29759D60
md5: 64742fd9016b802b023b86f02959f933
name: tmprcvcej6e
sha1: 4629cedf23e3bdc8ab87b9b3a6a8d5cfbcca6460
sha256: 459e5d8ab528528809fd5443d5d2379198bae8faabe5e7fa4b9540bb8ae86f4f
sha512: a722d4f7aa4d3fb37d904a1a21bfe40616da9058bd485f716a999f5bd02b859cab2ab43452195580d81874664aec9c7071625c04f88e43b7132e439f85cacf51
ssdeep: 12288:qIfoa8XAM5NO2mlyuQP1SW8uvpq5halQFM4DvEXTwipN6cn9U:qBa0OguQPYRIk5hQqDvEjwMB9U
type: PE32 executable (native) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan:Win32/Ymacco.AA2A also known as:

BkavW32.HfsReno.
MicroWorld-eScanGen:Variant.Zusy.301766
FireEyeGeneric.mg.64742fd9016b802b
McAfeeGenericRXKI-RO!64742FD9016B
CylanceUnsafe
SangforMalware
K7AntiVirusRootKit ( 000e24731 )
BitDefenderGen:Variant.Zusy.301766
K7GWRootKit ( 000e24731 )
CrowdStrikewin/malicious_confidence_100% (W)
Invinceaheuristic
F-ProtW32/Mikey.AM.gen!Eldorado
SymantecHacktool.Rootkit
APEXMalicious
AvastWin32:RootkitX-gen [Rtk]
ClamAVWin.Malware.Score-6856515-0
GDataGen:Variant.Zusy.301766
KasperskyHEUR:Trojan.Win32.Generic
AlibabaRootkit:Win32/Generic.76958af2
NANO-AntivirusVirus.Win32.Gen.ccmw
AegisLabTrojan.Win32.Generic.4!c
TencentWin32.Trojan.Gen.Wnwe
Endgamemalicious (high confidence)
EmsisoftGen:Variant.Zusy.301766 (B)
F-SecureHeuristic.HEUR/AGEN.1128512
DrWebTrojan.NtRootKit.20099
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
SophosMal/VMProtBad-A
IkarusTrojan.Win32.Rootkit
CyrenW32/Mikey.AM.gen!Eldorado
AviraHEUR/AGEN.1128512
MAXmalware (ai score=85)
MicrosoftTrojan:Win32/Ymacco.AA2A
ArcabitTrojan.Zusy.D49AC6
ZoneAlarmHEUR:Trojan.Win32.Generic
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Rootkit.C3905737
ALYacGen:Variant.Zusy.301766
Ad-AwareGen:Variant.Zusy.301766
MalwarebytesRootkit.Agent
ESET-NOD32a variant of Win32/Rootkit.Agent.OBZ
RisingRootkit.Lozer!1.9F65 (CLOUD)
SentinelOneDFI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/VMProtect.GD!tr
AVGWin32:RootkitX-gen [Rtk]
Cybereasonmalicious.f23e3b
Paloaltogeneric.ml
Qihoo-360HEUR/QVM00.1.F75E.Malware.Gen

How to remove Trojan:Win32/Ymacco.AA2A?

Trojan:Win32/Ymacco.AA2A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment