Trojan

Trojan:Win32/Ymacco.AB92 malicious file

Malware Removal

The Trojan:Win32/Ymacco.AB92 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Ymacco.AB92 virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan:Win32/Ymacco.AB92?


File Info:

name: CC807CE5809965F3540C.mlw
path: /opt/CAPEv2/storage/binaries/92207b44f1b237800c787ed03e8aec035e97628e5433a506bd74ffe642b97270
crc32: 9C930458
md5: cc807ce5809965f3540ca7cd34cd688e
sha1: 902955c9896673ede653e0bb79bab46428a24e8b
sha256: 92207b44f1b237800c787ed03e8aec035e97628e5433a506bd74ffe642b97270
sha512: a7d768e5c0c70800620eca0f1b7c96950b6d3fc36c5cd145c69b28e5037fca22987ce8f0b912dc42b9d2db474dd446ff5091f266a15f49003edef1d6254ab632
ssdeep: 1536:So2hsJCL20+Lc4+aEpOwd/VxDy/5X2++jCx3kdjKsPGR7ehp3vmLvsZIh:a2JCC0dbpDCw1p3vmLvsZIh
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A8D3A506F750562AF14280B4396AD77A7A291D711685EE07F7827FA838B06D3F4F4B0B
sha3_384: d99690d89c49c1c0e9a193f0cd4a3ef6b931bff2a278ca54debf897b53e890664b571f1f9487cfdc7639a9cfb1a5af7c
ep_bytes: 65727320656c656374726f6e6963616c
timestamp: 2008-11-16 03:29:47

Version Info:

0: [No Data]

Trojan:Win32/Ymacco.AB92 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Generic.4!c
DrWebWin32.HLLW.Autoruner.48319
MicroWorld-eScanTrojan.GenericKD.38795011
FireEyeGeneric.mg.cc807ce5809965f3
ALYacTrojan.GenericKD.38795011
MalwarebytesMalware.AI.3662093873
SangforTrojan.Win32.GenericKD.38795011
CrowdStrikewin/malicious_confidence_70% (W)
AlibabaTrojan:Win32/Barys.f4f97878
K7GWTrojan ( 0058d9111 )
K7AntiVirusTrojan ( 0058d9111 )
CyrenW32/Barys.AU.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Otfrem.C
TrendMicro-HouseCallTROJ_GEN.R002C0PAT22
Paloaltogeneric.ml
ClamAVWin.Malware.Lunam-6749633-0
BitDefenderTrojan.GenericKD.38795011
AvastWin32:Malware-gen
TencentWin32.Virus.Otfrem.Tayi
Ad-AwareTrojan.GenericKD.38795011
EmsisoftTrojan.GenericKD.38795011 (B)
BaiduWin32.Trojan.Otfrem.b
TrendMicroTROJ_GEN.R002C0PAT22
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataTrojan.GenericKD.38795011
MAXmalware (ai score=89)
Antiy-AVLTrojan/Generic.ASMalwS.350F259
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/Ymacco.AB92
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.PY.R468144
McAfeeGenericRXRN-PR!CC807CE58099
APEXMalicious
RisingVirus.Otfrem!8.6E8 (CLOUD)
IkarusTrojan.VB.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Otfrem.C!tr
AVGWin32:Malware-gen

How to remove Trojan:Win32/Ymacco.AB92?

Trojan:Win32/Ymacco.AB92 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment