Malware

Should I remove “Win32/ClipBanker.AA”?

Malware Removal

The Win32/ClipBanker.AA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/ClipBanker.AA virus can do?

  • A process attempted to delay the analysis task by a long amount of time.
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine Win32/ClipBanker.AA?


File Info:

crc32: EA0BF1C3
md5: afbe04a35ff1cac94f36ba85853ca821
name: AFBE04A35FF1CAC94F36BA85853CA821.mlw
sha1: ae42fe188f43455c236c8b44d5114c77066f861d
sha256: f1866c194f26f765f194acd090afbe549d689e070fedd42c5431cd0eaeeb548e
sha512: 12b524c37d1d089983ae6a41b7d534489911b9d6467dde066492c9ba6c40dfad6f80d6de55ca5d8dcdadbc26fed931a1a6242795f0c8e0f39135f5032975c82e
ssdeep: 768:oI3MsAb1b/vU5//5ua1FgDWAAKpybGBtjZnOhNKGwcdWgbzsWjcd0BMAgAhm0oy:l1GvZWHetNRcdrsWjcdegd0oy
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/ClipBanker.AA also known as:

BkavW32.AIDetect.malware2
MicroWorld-eScanGen:Trojan.Malware.euW@aG7VyHki
FireEyeGeneric.mg.afbe04a35ff1cac9
ALYacGen:Trojan.Malware.euW@aG7VyHki
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 00505cfa1 )
BitDefenderGen:Trojan.Malware.euW@aG7VyHki
K7GWTrojan ( 00505cfa1 )
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastFileRepMalware
KasperskyHEUR:Trojan.Win32.Generic
RisingTrojan.Malex!8.657 (C64:YzY0OlBUQF59zay1)
Ad-AwareGen:Trojan.Malware.euW@aG7VyHki
EmsisoftGen:Trojan.Malware.euW@aG7VyHki (B)
F-SecureHeuristic.HEUR/AGEN.1115442
ZillyaTrojan.ClipBanker.Win32.5803
McAfee-GW-EditionBehavesLike.Win32.AdwareLinkury.km
SophosMal/Generic-S
GDataGen:Trojan.Malware.euW@aG7VyHki
JiangminTrojan.Generic.bkijm
AviraHEUR/AGEN.1115442
Antiy-AVLTrojan/Win32.AGeneric
ArcabitTrojan.Malware.E6DBE0
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojan:Win32/Malex.gen!E
CynetMalicious (score: 85)
AhnLab-V3Malware/Win32.Generic.C3148143
McAfeeArtemis!AFBE04A35FF1
MAXmalware (ai score=84)
VBA32BScope.Trojan.Skeeyah
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/ClipBanker.AA
TencentMalware.Win32.Gencirc.114a603e
YandexTrojan.GenAsa!u4uZ92PV3NA
FortinetW32/Generic.AC.2DBED!tr
BitDefenderThetaGen:NN.ZexaF.34590.euW@aG7VyHki
AVGFileRepMalware
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.d53

How to remove Win32/ClipBanker.AA?

Win32/ClipBanker.AA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment