Trojan

Trojan:Win32/Ymacco.ABA0 removal tips

Malware Removal

The Trojan:Win32/Ymacco.ABA0 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Ymacco.ABA0 virus can do?

  • Authenticode signature is invalid

How to determine Trojan:Win32/Ymacco.ABA0?


File Info:

name: 395AC4B17304373E9ECA.mlw
path: /opt/CAPEv2/storage/binaries/a074e645ff6a5ba047aaf70d65205ce6a9e46db4b27dfacc6c632e348cf4421e
crc32: 9916298A
md5: 395ac4b17304373e9eca6378a58e3e0b
sha1: 0713efef1014966daff1c2953b9b2b8381a315ce
sha256: a074e645ff6a5ba047aaf70d65205ce6a9e46db4b27dfacc6c632e348cf4421e
sha512: 844c5b9cfdc273bee8fb2dfad0956312419ceb0f84fe316c02a3fc8f24232b2921d78035058147991701d579b2c377727b4713dad9fdaf0ac5f8c83ee57c3352
ssdeep: 768:Wvy4HOVn4CoeRvRNy8d6wiZXBXjk0BP4KaBiuWyqKxq7iXyyJXX:CQd6nBd54NWzCX
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1B3235A3967A0F273D0964078615DB75336B33E3081E0845BFF6A171EAA31BE5A92E707
sha3_384: eb6e8e8598ac1231f031834ee539a1fc9b6ebb40c1485a03efbdc0b9f697f2f4e1992f46c6d9eb916edc86e4f1e6032d
ep_bytes: 558bec83ec18c745fcdc830010ff75fc
timestamp: 2017-06-09 06:29:15

Version Info:

0: [No Data]

Trojan:Win32/Ymacco.ABA0 also known as:

LionicTrojan.Win32.Generic.4!c
AVGWin32:Malware-gen
FireEyeGeneric.mg.395ac4b17304373e
SkyhighArtemis!Trojan
ZillyaTrojan.Injector.Win32.879318
SangforTrojan.Win32.Injector.DPEX
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaTrojan:Win32/Injector.af67f1d6
K7GWTrojan ( 0050fd071 )
K7AntiVirusTrojan ( 0050fd071 )
BitDefenderThetaGen:NN.ZedlaF.36802.dq4@ayADpLg
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Injector.DPEX
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
NANO-AntivirusTrojan.Win32.Inject.eqagqd
AvastWin32:Malware-gen
TencentWord.Trojan.Inject.Cflw
F-SecureTrojan.TR/Injector.gword
Trapminesuspicious.low.ml.score
SophosML/PE-A
AviraTR/Injector.gword
MicrosoftTrojan:Win32/Ymacco.ABA0
XcitiumMalware@#1rbmkwrmcnc0y
ZoneAlarmHEUR:Trojan.Win32.Generic
GoogleDetected
McAfeeArtemis!395AC4B17304
VBA32BScope.Trojan.Nisloder
Cylanceunsafe
PandaTrj/GdSda.A
RisingTrojan.Injector!8.C4 (CLOUD)
YandexTrojan.Injector!4Wv1zreTzzY
IkarusTrojan.Win32.Injector
FortinetW32/Generic.AP.F3B56!tr
DeepInstinctMALICIOUS

How to remove Trojan:Win32/Ymacco.ABA0?

Trojan:Win32/Ymacco.ABA0 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment