Trojan

Trojan:Win32/Ymacco.AB0B malicious file

Malware Removal

The Trojan:Win32/Ymacco.AB0B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Ymacco.AB0B virus can do?

  • Presents an Authenticode digital signature
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan:Win32/Ymacco.AB0B?


File Info:

crc32: 5CAD6766
md5: 88ef3db9d8bdd11ee01a68ff48b6be3f
name: 88EF3DB9D8BDD11EE01A68FF48B6BE3F.mlw
sha1: 87ea8824a99095acdaa7426b77a3c3f0d8f448cf
sha256: 1f81c0e1e68e73f06e4831ca0401116581305ce0bf4fc5a19ddd0695c606b6e9
sha512: e3bbab050812de8bfac0e4dfe7177538bb77c5fd00009a6de6c935f124f2b8b11a0e59d1e82cc5132f22992022fc19bdfe1edaea40843d3637f93de0568eec0c
ssdeep: 24576:UDclowW8YVm5LWZ3kY+AvrbbvcO4zyPq3+AvIkjIOr3wh1vXuI5MHcq:UDmW2ATnvcO4zyPq3+AQZOr36Xk/
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2016 McAfee, Inc.
InternalName: SecurityScanner
FileVersion: 3,11,500,0
CompanyName: McAfee, Inc.
ProductName: McAfee Security Scanner +
ProductVersion: 3,11,0,0
FileDescription: Security Scanner Startup DLL
OriginalFilename: SecurityScanner.dll
Translation: 0x0409 0x00b0

Trojan:Win32/Ymacco.AB0B also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0052974b1 )
LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.BtcMine.2428
CynetMalicious (score: 100)
ALYacTrojan.BitCoinMiner.DQ
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.1373432
SangforMiner.Win32.0052a2ec_1.se2
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaTrojan:Win32/Katusha.f2bed007
K7GWTrojan ( 0052974b1 )
Cybereasonmalicious.9d8bdd
SymantecMiner.XMRig!gen1
ESET-NOD32a variant of Win32/Kryptik.GDXP
APEXMalicious
AvastWin32:Malware-gen
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderTrojan.BitCoinMiner.DQ
NANO-AntivirusRiskware.Win32.BitCoinMiner.eyqjnb
MicroWorld-eScanTrojan.BitCoinMiner.DQ
TencentMalware.Win32.Gencirc.114ce11c
Ad-AwareTrojan.BitCoinMiner.DQ
SophosICLoader (PUA)
ComodoTrojWare.Win32.SpyEyes.BSWP@7k7ll0
BitDefenderThetaGen:NN.ZexaF.34294.fA2@aOGoIiii
VIPRETrojan.Win32.Generic!BT
TrendMicroTrojan.Win32.EKSTAK.SM
McAfee-GW-EditionBehavesLike.Win32.Generic.vc
FireEyeGeneric.mg.88ef3db9d8bdd11e
EmsisoftTrojan.BitCoinMiner.DQ (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Crypt.XPACK.Gen2
eGambitUnsafe.AI_Score_51%
Antiy-AVLTrojan/Generic.ASMalwS.24DA2AA
MicrosoftTrojan:Win32/Ymacco.AB0B
GDataTrojan.BitCoinMiner.DQ
AhnLab-V3Trojan/Win32.CoinMiner.R222150
Acronissuspicious
McAfeeGenericRXEI-GM!88EF3DB9D8BD
MAXmalware (ai score=99)
VBA32BScope.Trojan.BtcMine
MalwarebytesMalware.AI.3454537329
PandaTrj/Genetic.gen
TrendMicro-HouseCallTrojan.Win32.EKSTAK.SM
RisingTrojan.CoinMiner!1.AFF9 (CLASSIC)
YandexTrojan.GenAsa!gIEb810CzWE
IkarusVirus.Win32.Parite
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/GenKryptik.BSHP!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan:Win32/Ymacco.AB0B?

Trojan:Win32/Ymacco.AB0B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment