Trojan

Trojan:Win32/Ymacco.AB06 removal guide

Malware Removal

The Trojan:Win32/Ymacco.AB06 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Ymacco.AB06 virus can do?

  • Injection (inter-process)
  • Injection with CreateRemoteThread in a remote process
  • Uses Windows utilities for basic functionality
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan:Win32/Ymacco.AB06?


File Info:

crc32: 15F1B29B
md5: 676bf9264ffe2af9c9d7fcb995fcc644
name: upload_file
sha1: 4ab718bce61f7919c8d6b83521f7edc313298a54
sha256: 06fd7265cf91761e6f434a6a00cef994c150783357c5739227bfe980119d577f
sha512: edc3a9cbe17a0399001d212236b906d60a07d113382f64a0158f19de9015fefe1a0bf1ed88e2d184a0acb3386d88a3ab2e4f6f606df98c5244984ef9ab35bf84
ssdeep: 768:txpPtHthviqD21PeSCEMHton86xKhJuphEXqrsrsBQFY6mY3gF2KvmIBG1m:3pBPvxD29wgsmQ13g/vmU
type: ELF 32-bit MSB executable, Motorola 68020 - invalid byte order, version 1 (SYSV), dynamically linked (uses shared libs), stripped

Version Info:

0: [No Data]

Trojan:Win32/Ymacco.AB06 also known as:

MicroWorld-eScanTrojan.Linux.Generic.180297
FireEyeTrojan.Linux.Generic.180297
McAfeeLinux/Mirai.e
ZillyaTrojan.Mirai.Linux.76630
AegisLabTrojan.Linux.Mirai.K!c
InvinceaLinux/DDoS-CI
BitDefenderThetaGen:NN.Mirai.34216
SymantecLinux.Mirai
ESET-NOD32a variant of Linux/Mirai.A
TrendMicro-HouseCallPossible_MIRAI.SMLBO5
AvastELF:Mirai-AGR [Trj]
ClamAVUnix.Trojan.Mirai-1
KasperskyHEUR:Backdoor.Linux.Mirai.n
BitDefenderTrojan.Linux.Generic.180297
NANO-AntivirusTrojan.Mirai.hsslbc
RisingBackdoor.Mirai!8.E05B (TFE:14:INQ6fenMwCJ)
Ad-AwareTrojan.Linux.Generic.180297
SophosLinux/DDoS-CI
Comodo.UnclassifiedMalware@0
DrWebLinux.Mirai.1834
TrendMicroPossible_MIRAI.SMLBO5
EmsisoftTrojan.Linux.Generic.180297 (B)
IkarusTrojan.Linux.Mirai
GDataLinux.Trojan.Mirai.B
JiangminBackdoor.Linux.doer
AviraLINUX/Mirai.bonb
MicrosoftTrojan:Win32/Ymacco.AB06
ArcabitTrojan.Linux.Generic.D2C049
AhnLab-V3Linux/Mirai.Gen
ZoneAlarmHEUR:Backdoor.Linux.Mirai.n
Avast-MobileELF:Mirai-FY [Trj]
CynetMalicious (score: 85)
ALYacTrojan.Linux.Generic.180297
TencentBackdoor.Linux.Mirai.wba
MAXmalware (ai score=83)
FortinetELF/Mirai.B!tr
AVGELF:Mirai-AGR [Trj]
Qihoo-360virus.elf.mirai.c

How to remove Trojan:Win32/Ymacco.AB06?

Trojan:Win32/Ymacco.AB06 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment