Trojan

How to remove “Trojan:Win32/Ymacco.AB78”?

Malware Removal

The Trojan:Win32/Ymacco.AB78 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Ymacco.AB78 virus can do?

  • Presents an Authenticode digital signature
  • Drops a binary and executes it
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
www.flushcdn.com

How to determine Trojan:Win32/Ymacco.AB78?


File Info:

crc32: D12B59B8
md5: d22670ab9b13de79e442100f56985032
name: D22670AB9B13DE79E442100F56985032.mlw
sha1: 6e7540fa001fc992d2050b97ea17686d34863740
sha256: 78cc364e761701455bdc4bce100c2836566e662b87b5c28251c178eba2e9ce7e
sha512: 5c0a1a207feea85ceca36d9eea02640911f498f15eea430b8b70f10f56cd9b53e9bb52ff4dd51758163bbc53a3b11f3bfcaaffed6510cc7a9658a2c0fc79e3b0
ssdeep: 3072:oMctdLnq6BXXc8wC+4a0qJ15JvZRqQVRjK6bPD5:DciR9BZwQ3W+L5
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan:Win32/Ymacco.AB78 also known as:

K7AntiVirusTrojan ( 0057b83b1 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoad4.14381
CAT-QuickHealTrojan.AgentRI.S20542612
ALYacDropped:Trojan.GenericKD.46192468
CylanceUnsafe
ZillyaTrojan.Agent.Win32.1996999
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanDownloader:Win32/DangerousSig.c9347fcf
K7GWTrojan ( 0057b83b1 )
SymantecTrojan.Gen.MBT
ESET-NOD32Win32/TrojanDownloader.Small.BHU
AvastWin32:Trojan-gen
KasperskyHEUR:Trojan.Win32.Agent.gen
BitDefenderDropped:Trojan.GenericKD.46192468
NANO-AntivirusTrojan.Win32.DownLoad4.ivdwwy
MicroWorld-eScanDropped:Trojan.GenericKD.46192468
Ad-AwareDropped:Trojan.GenericKD.46192468
VIPRETrojan.Win32.Generic!BT
FireEyeGeneric.mg.d22670ab9b13de79
EmsisoftMalCert.A (A)
JiangminTrojan.Agent.dgmb
WebrootW32.Trojan.Gen
AviraTR/Dldr.Small.zgvfj
Antiy-AVLTrojan/Generic.ASMalwS.32CDA34
MicrosoftTrojan:Win32/Ymacco.AB78
ArcabitTrojan.Generic.D2C0D754
GDataDropped:Trojan.GenericKD.46192468
AhnLab-V3Trojan/Win.Generic.C4465495
McAfeeArtemis!D22670AB9B13
MAXmalware (ai score=85)
VBA32BScope.Trojan.Cometer
MalwarebytesTrojan.Downloader
TrendMicro-HouseCallTROJ_GEN.R002H0CDS21
YandexTrojan.Agent!8tvXIOV44KA
IkarusWin32.Outbreak
MaxSecureTrojan.Malware.771626.susgen
FortinetW32/Agent.AIJ!tr
AVGWin32:Trojan-gen
Qihoo-360Win32/Trojan.Generic.HgIASTEA

How to remove Trojan:Win32/Ymacco.AB78?

Trojan:Win32/Ymacco.AB78 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment