Trojan

How to remove “Trojan:Win32/Ymacco.ABD2”?

Malware Removal

The Trojan:Win32/Ymacco.ABD2 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Ymacco.ABD2 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.

How to determine Trojan:Win32/Ymacco.ABD2?


File Info:

crc32: EC70D2C6
md5: 4fe68a78d1f55bd1904fd655f42c7971
name: 142_20160408.exe
sha1: 46396e98895d5b888c3b0b72a0ccd5c407717348
sha256: db0050990a20aa9ec53b3e2977342d29c66d7c6f5d0f72cc7aaf119d874c15f4
sha512: d255369ed31f46f7aa227e79d5c46645ac0c099ffe3fa971d5bfbf7034c76b9e6365abc1cb058145ef702512d371acb2a181b60835209fb171650cb8876860a0
ssdeep: 49152:o87Jg9kNvEiQC4tgj+uGWm/ByWqKT5JIuwhqQuNmBD:F7i95Ej+uA/8WqKTzHBVYBD
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2015
InternalName: install.exe
FileVersion: 1.0.0.0
CompanyName: x5317x4eacx4e91x7acbx65b9x79d1x6280x6709x9650x516cx53f8
ProductName: wifi
ProductVersion: 1.0.0.0
FileDescription: x4e3bx9898x5b89x88c5x7a0bx5e8f
OriginalFilename: install.exe
Translation: 0x0804 0x04b0

Trojan:Win32/Ymacco.ABD2 also known as:

MicroWorld-eScanGen:Variant.Adware.Graftor.273185
FireEyeGeneric.mg.4fe68a78d1f55bd1
CAT-QuickHealTrojan.MauvaiseRI.S5256593
McAfeePUP-XAL-LM
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
K7AntiVirusAdware ( 004dab441 )
BitDefenderGen:Variant.Adware.Graftor.273185
K7GWAdware ( 004dab441 )
Cybereasonmalicious.8d1f55
Invinceaheuristic
SymantecSMG.Heur!gen
TrendMicro-HouseCallTROJ_GEN.R015C0OFB20
Paloaltogeneric.ml
GDataGen:Variant.Adware.Graftor.273185
AlibabaAdWare:Win32/Weiduan.b0c149a9
NANO-AntivirusRiskware.Win32.Weiduan.euwrpo
ViRobotAdware.Weiduan.2577920
TencentMalware.Win32.Gencirc.10b3e885
Ad-AwareGen:Variant.Adware.Graftor.273185
SophosBundleInstaller (PUA)
ComodoApplicUnwnt@#2s349es1956tp
F-SecureHeuristic.HEUR/AGEN.1111954
DrWebAdware.Weiduan.5
ZillyaAdware.Weiduan.Win32.149
TrendMicroTROJ_GEN.R015C0OFB20
Trapminesuspicious.low.ml.score
EmsisoftGen:Variant.Adware.Graftor.273185 (B)
APEXMalicious
CyrenW32/Adware.FHGX-8755
WebrootW32.Malware.gen
AviraHEUR/AGEN.1111954
MAXmalware (ai score=69)
Antiy-AVLTrojan/Win32.TSGeneric
Endgamemalicious (high confidence)
ArcabitTrojan.Adware.Graftor.D42B21
MicrosoftTrojan:Win32/Ymacco.ABD2
CynetMalicious (score: 85)
AhnLab-V3PUP/Win32.BundleInstaller.R179553
Acronissuspicious
VBA32Adware.Weiduan
MalwarebytesAdware.Weiduan
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/Adware.Weiduan.G
RisingTrojan.Vigorf!8.EAEA (CLOUD)
YandexPUA.Weiduan!
IkarusPUA.Weiduan
FortinetRiskware/BundleInstaller
AVGWin32:Adware-gen [Adw]
AvastWin32:Adware-gen [Adw]
CrowdStrikewin/malicious_confidence_70% (D)
Qihoo-360Generic/HEUR/QVM41.2.E267.Malware.Gen

How to remove Trojan:Win32/Ymacco.ABD2?

Trojan:Win32/Ymacco.ABD2 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment