In this article, I am going to clarify how the Gataka trojan infused right into your computer, and the best way to clear away Gataka trojan virus.
What is Gataka trojan?
Name | Gataka |
Infection Type | Trojan |
Symptoms |
|
Similar behavior | Zenfly, MultiPlug, Arkeistealer, CrimSon, MatiexKeylogger, Uphosyfs |
Fix Tool | See If Your System Has Been Affected by Gataka trojan |
Trojan viruses are among the leading malware sorts by its injection frequency for quite a very long time. And now, during the pandemic, when malware became enormously active, trojan viruses raised their activity, too. You can see lots of messages on diverse sources, where users are complaining concerning the Gataka trojan virus in their computer systems, and also requesting for assisting with Gataka trojan virus elimination.
Trojan Gataka is a kind of virus that injects right into your system, and afterwards executes different harmful functions. These functions rely on a sort of Gataka trojan: it may work as a downloader for other malware or as a launcher for another malicious program which is downloaded along with the Gataka trojan virus. Throughout the last 2 years, trojans are likewise dispersed with email attachments, and most of cases used for phishing or ransomware infiltration.
Gataka2 also known as
Bkav | W32.AIDetect.malware2 |
K7AntiVirus | Trojan ( 003778d21 ) |
Elastic | malicious (high confidence) |
DrWeb | BackDoor.Hermes.235 |
Cynet | Malicious (score: 100) |
ALYac | Gen:Heur.Cridex.2 |
Cylance | Unsafe |
Zillya | Trojan.Gataka.Win32.54 |
Sangfor | Trojan.Win32.Save.a |
CrowdStrike | win/malicious_confidence_60% (D) |
K7GW | Trojan ( 003778d21 ) |
Cybereason | malicious.bb46d2 |
Symantec | ML.Attribute.HighConfidence |
ESET-NOD32 | Win32/Gataka.B |
APEX | Malicious |
Avast | FileRepMetagen [Rtk] |
Kaspersky | UDS:DangerousObject.Multi.Generic |
BitDefender | Gen:Heur.Cridex.2 |
NANO-Antivirus | Trojan.Win32.Hermes.xedex |
ViRobot | Trojan.Win32.A.Zbot.210944.BJ |
MicroWorld-eScan | Gen:Heur.Cridex.2 |
Tencent | Win32.Trojan-Spy.Zbot.bzem |
Ad-Aware | Gen:Heur.Cridex.2 |
Sophos | Mal/Generic-S |
Comodo | Malware@#3ptmylrdjysiq |
BitDefenderTheta | Gen:NN.ZexaF.34688.mqW@aarJ2aoc |
VIPRE | Trojan.Win32.Generic!BT |
TrendMicro | TROJ_GATAKA_BK0843DC.TOMC |
McAfee-GW-Edition | BehavesLike.Win32.ZBot.dc |
FireEye | Generic.mg.8720513bb46d2dee |
Emsisoft | Gen:Heur.Cridex.2 (B) |
SentinelOne | Static AI – Malicious PE |
Jiangmin | TrojanSpy.Zbot.bvar |
Webroot | W32.Malware.Gen |
Avira | TR/Crypt.ZPACK.Gen2 |
eGambit | Unsafe.AI_Score_89% |
Antiy-AVL | Trojan/Generic.ASMalwS.E8FFB9 |
Microsoft | Trojan:Win32/Gataka.D |
AegisLab | Trojan.Win32.Zbot.l!c |
GData | Gen:Heur.Cridex.2 |
AhnLab-V3 | Trojan/Win32.Tatanarg.C232831 |
Acronis | suspicious |
McAfee | PWS-Zbot.gen.afv |
MAX | malware (ai score=81) |
VBA32 | BScope.TrojanPSW.Panda |
Panda | Trj/Pacrypt.AE |
TrendMicro-HouseCall | TROJ_GATAKA_BK0843DC.TOMC |
Rising | Trojan.Win32.Generic.13057402 (C64:YzY0On64hjmBW6f/) |
Yandex | TrojanSpy.Zbot!4Zu3D3kTx2w |
Ikarus | Trojan.Win32.Ransom |
Fortinet | W32/Zbot.ASJ!tr |
AVG | FileRepMetagen [Rtk] |
Paloalto | generic.ml |
Domains that associated with Gataka:
0 | z.whorecord.xyz |
1 | a.tomx.xyz |
What are the symptoms of Gataka trojan?
- Executable code extraction;
- Injection with CreateRemoteThread in a remote process;
- Creates RWX memory;
- Unconventionial language used in binary resources: Russian;
- The binary likely contains encrypted or compressed data.;
- Code injection with CreateRemoteThread in a remote process;
- Deletes its original binary from disk;
- Installs itself for autorun at Windows startup;
- Network activity detected but not expressed in API logs;
- Creates a copy of itself;
- Anomalous binary characteristics;
The typical sign of the Gataka trojan virus is a progressive appearance of a wide range of malware – adware, browser hijackers, and so on. Due to the activity of these malicious programs, your computer ends up being extremely lagging: malware consumes substantial amounts of RAM and CPU capabilities.
Another visible result of the Gataka trojan virus presence is unfamiliar operations showed in task manager. Often, these processes may try to simulate system processes, but you can recognize that they are not legit by checking out the genesis of these processes. Pseudo system applications and Gataka trojan’s processes are always listed as a user’s tasks, not as a system’s.
How to remove Gataka trojan virus?
- Download and install Loaris Trojan Remover.
- Open Loaris and perform a “Standard scan“.
- “Move to quarantine” all items.
- Open “Tools” tab – Press “Reset Browser Settings“.
- Approve the reset pressing “Yes” button in the appeared window.
- Restart your computer.
To clean up Gataka trojan and ensure that all satellite malware, downloaded with the help of this trojan, will be cleaned, too, I’d advise you to use Loaris Trojan Remover.
Gataka removal guide
To detect and remove all malware on your personal computer using Loaris Trojan Remover, it’s better to use Standard or Full scan. Removable scan, as well as Custom, will check only specified locations, so such checks are not able to provide the full information.
You can see the detects till the scan process goes. However, to perform any actions against spotted viruses, you need to wait until the process is finished, or to interrupt the scan.
To choose the appropriate action for each detected viruses, click the knob in front of the name of detected malware. By default, all malicious programs will be moved to quarantine.
How to remove Gataka Trojan?
Name: Gataka
Description: Trojan Gataka is a kind of virus that infiltrates into your computer, and after that performs different destructive functions. These features depend upon a type of Gataka trojan: it can act as a downloader for many other malware or as a launcher for another destructive program which is downloaded in addition to the Gataka trojan. During the last two years, trojans are also dispersed via e-mail attachments, and most of situations utilized for phishing or ransomware infiltration.
Operating System: Windows
Application Category: Trojan
User Review
( votes)- What is Trojan Horse: https://en.wikipedia.org/wiki/Trojan_horse_(computing)
- Gataka VirusTotal Report: