Trojan

About “Trojan:Win32/Ymacco.AB3F” infection

Malware Removal

The Trojan:Win32/Ymacco.AB3F is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Ymacco.AB3F virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan:Win32/Ymacco.AB3F?


File Info:

crc32: 3BC7A9FB
md5: a129a256b9113b4a9283d4d755fbdee1
name: A129A256B9113B4A9283D4D755FBDEE1.mlw
sha1: 4014c2a9308acaea0b6acbf29f299a4abfd4d560
sha256: 3f4689ec7f18f1c30786b9953ed1fccb79f806a233aeb730fff83b432adf87bf
sha512: 5de3ab93a5e21b54878ea42a823e163f6b7fcb794d1528b46d38d883815c8d8cd53ad365e179b51f326b314f67c9731865844162f1565fa1e412582a02a9f742
ssdeep: 98304:ZtL/BgbcDRxypFiyd9HoHvoIBtcGji/YolqTBbYutp:ZzgiydeHA4+I
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

0: [No Data]

Trojan:Win32/Ymacco.AB3F also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Agent.FAXT
FireEyeGeneric.mg.a129a256b9113b4a
McAfeePWS-FCSR!A129A256B911
CylanceUnsafe
AegisLabTrojan.MSIL.Agensla.i!c
SangforMalware
K7AntiVirusSpyware ( 004bf6371 )
BitDefenderTrojan.Agent.FAXT
K7GWSpyware ( 004bf6371 )
Cybereasonmalicious.9308ac
CyrenW32/Faker.J.gen!Eldorado
SymantecML.Attribute.HighConfidence
AvastWin32:RATX-gen [Trj]
KasperskyHEUR:Trojan-PSW.MSIL.Agensla.gen
AlibabaTrojanPSW:MSIL/Agensla.2590867a
ViRobotTrojan.Win32.Z.Agent.5473792.A
Ad-AwareTrojan.Agent.FAXT
SophosMal/Generic-S
ComodoMalware@#33fcl77djguab
F-SecureHeuristic.HEUR/AGEN.1130544
DrWebTrojan.Inject4.6292
TrendMicroTrojanSpy.MSIL.AGENSLA.USMANLL20
McAfee-GW-EditionPWS-FCSR!A129A256B911
EmsisoftTrojan.Agent.FAXT (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1130544
KingsoftWin32.Heur.KVM007.a.(kcloud)
MicrosoftTrojan:Win32/Ymacco.AB3F
GridinsoftTrojan.Win32.Downloader.oa
ArcabitTrojan.Agent.FAXT
ZoneAlarmHEUR:Trojan-PSW.MSIL.Agensla.gen
GDataTrojan.Agent.FAXT
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.C4267046
BitDefenderThetaGen:NN.ZemsilF.34700.@pW@a46C1Wf
ALYacTrojan.Agent.FAXT
VBA32TScope.Trojan.MSIL
MalwarebytesTrojan.Crypt.MSIL
PandaTrj/CI.A
ZonerTrojan.Win32.99876
ESET-NOD32MSIL/Spy.Agent.AES
TrendMicro-HouseCallTrojanSpy.MSIL.AGENSLA.USMANLL20
YandexTrojan.Igent.bU0y4O.42
IkarusTrojan-Spy.Keylogger.AgentTesla
FortinetMSIL/Injector.VGF!tr
AVGWin32:RATX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_90% (D)
Qihoo-360Generic/Trojan.PSW.374

How to remove Trojan:Win32/Ymacco.AB3F?

Trojan:Win32/Ymacco.AB3F removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment