Trojan

About “UDS:Trojan.Win32.Lolopak” infection

Malware Removal

The UDS:Trojan.Win32.Lolopak is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What UDS:Trojan.Win32.Lolopak virus can do?

  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine UDS:Trojan.Win32.Lolopak?


File Info:

crc32: 42EFA83E
md5: 98e5fbf173ef4ce030a01fb11736569b
name: 98E5FBF173EF4CE030A01FB11736569B.mlw
sha1: 11d4963062d254a4372ee96eb352f01bfdd320ff
sha256: d270dee1e7ed202fcc30470a64058c704ff2d499b0b1649e1c589874b1585567
sha512: 912e5f49cb6810279d8eb8c41658b6755b049dcc864897fa14672b7696037bff4b39dba520d39a22de9e45bc86ce39f54dd226d7259e688c4de390364ca80182
ssdeep: 49152:7JZoQrbTFZY1iaCCEsbFBlXNPfm0w2MLCIyEH8mXmvRmdvdrDPtY7ZoTKwnN:7trbTA1vnv9xFxpIJH8gmvUZ9pN
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

CompiledScript: AutoIt v3 Script: 3, 3, 8, 1
FileVersion: 3, 3, 8, 1
FileDescription:
Translation: 0x0809 0x04b0

UDS:Trojan.Win32.Lolopak also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00539d2f1 )
LionicTrojan.Win32.VB.lpG0
Elasticmalicious (high confidence)
DrWebBackDoor.IRC.Bot.3194
MicroWorld-eScanAIT:Trojan.Nymeria.4579
CAT-QuickHealTrojan.AutoIt.Injector.ZZ
ALYacTrojan.Delf.FareIt.Gen.AJX@cGfXAvki
CylanceUnsafe
ZillyaTrojan.Generic.Win32.698636
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaVirTool:Win32/CeeInject.428ebeab
K7GWTrojan ( 00539d2f1 )
Cybereasonmalicious.173ef4
CyrenW32/Fareit.FNGH-3088
SymantecTrojan.Gen.MBT
ESET-NOD32multiple detections
APEXMalicious
AvastWin32:Trojan-gen
CynetMalicious (score: 100)
KasperskyUDS:Trojan.Win32.Lolopak
BitDefenderAIT:Trojan.Nymeria.4579
NANO-AntivirusRiskware.Win32.BitCoinMiner.fnyvlm
TencentWin32.Risk.Bitcoinminer.Hwwj
Ad-AwareAIT:Trojan.Nymeria.4579
SophosMal/Generic-S + Mal/Fareit-Q
ComodoMalware@#1d58pk2156ez4
BitDefenderThetaAI:Packer.5A57D81618
TrendMicroTrojanSpy.Win32.LOKI.SMDD.hp
McAfee-GW-EditionBehavesLike.Win32.Yahlover.vc
FireEyeGeneric.mg.98e5fbf173ef4ce0
EmsisoftAIT:Trojan.Nymeria.4579 (B)
AviraHEUR/AGEN.1110325
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.2AD7B67
MicrosoftTrojan:Win32/Bluteal!rfn
GDataTrojan.Delf.FareIt.Gen.AJX@cGfXAvki (2x)
AhnLab-V3Trojan/Win32.Generic.C3090579
McAfeeArtemis!98E5FBF173EF
MAXmalware (ai score=82)
PandaTrj/CI.A
TrendMicro-HouseCallTrojanSpy.Win32.LOKI.SMDD.hp
RisingTrojan.Injector!1.AFE3 (CLASSIC)
YandexTrojan.GenAsa!TfWnjYfBO38
IkarusTrojan.Inject
MaxSecureTrojan.Autoit.AZA
FortinetW32/LOKI.2E00!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove UDS:Trojan.Win32.Lolopak?

UDS:Trojan.Win32.Lolopak removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment