Crack

WinGo/HackTool.Platypus.A removal

Malware Removal

The WinGo/HackTool.Platypus.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What WinGo/HackTool.Platypus.A virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine WinGo/HackTool.Platypus.A?


File Info:

name: A762AB0E9C89B11BFE86.mlw
path: /opt/CAPEv2/storage/binaries/b6140730c31404f80586d2654da910b4af79325ecdc595696e81b697952f3c2f
crc32: C1E45903
md5: a762ab0e9c89b11bfe86546e98814def
sha1: 9244b3e0f4d55681f65d61ae3cc9ad478ab523fe
sha256: b6140730c31404f80586d2654da910b4af79325ecdc595696e81b697952f3c2f
sha512: 9de07663a2110361786d38387c80936cbaa9a7e08e6b12e41765da295d7e7b909199447395f1af97d8b5b4cb60f158b7a0b54ede6b87d59784971f28181972ea
ssdeep: 98304:+yfwHBQ1RDOh0NmLiv5oU8r1jBYxc1CGKs7jAeiNnVhN7Gxrlw:+yf1jeeDBQAxUKQ1EVhN7arl
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T1383633671D26D2A2C8E50CF572EBE9B11272D47F291C3DB1A34B465B87833CB2E22553
sha3_384: f3e33a70c2aa9cf88bc7f5ba54ce3ffbf399bf6fd837da41dcdf0f54947fc8b96edc8fadaf01bb3c87d8d024285dc710
ep_bytes: 53565755488d35bac5b4ff488dbedbdf
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

WinGo/HackTool.Platypus.A also known as:

CrowdStrikewin/malicious_confidence_60% (W)
ESET-NOD32a variant of WinGo/HackTool.Platypus.A
McAfee-GW-EditionBehavesLike.Win64.Trickbot.rc
CynetMalicious (score: 100)
RisingHacktool.Platypus!8.16D2B (CLOUD)
MaxSecureTrojan.Malware.300983.susgen

How to remove WinGo/HackTool.Platypus.A?

WinGo/HackTool.Platypus.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment