How To Remove 2B8A.exe Win32:Crypt-QDF ?
Contents
This type of infection spreads through removable media like USB key, SD cards, phones, GPS, tablets ..
Any USB device containing free disk space can be contaminated. 2B8A.exe was detected by UsbFix, Anti-Malware Software for USB. The file was submitted to VirusTotal, a service that combines the detection of more than 40 antivirus engines.
Propagation scheme :
In (1) healthy USB support is plugged into an infected PC, where the infection is active. This will automatically create a copy of the malicious code (2) on the healthy USB support. Once the USB support healthy contaminated, it serves as a means of transport to the infection to infect a healthy PC (3).
To understand this type of infection, we invite you to read these Post: USB Virus General Description and
How to remove shortcut virus USB ?
How to remove 2B8A.exe Win32:Crypt-QDF ?
UsbFix removes this type of infection, UsbFix will clean your computer and all infected USB drives. UsbFix will also search and restore all your data lost due to infection. UsbFix is an application developed by SOSVirus team. UsbFix is free, a premium version with real-time protection is comming soon.
- Download UsbFix on your computer, and run it.
- Connect all your external data sources to your PC (Usb keys, external drives ...)
- Press Clean Button.
- UsbFix work completely independently.
- Tutorial UsbFix.
Information for : 2B8A.exe Win32:Crypt-QDF
Detection : Win32:Crypt-QDF
Size : 180224 bytes.
File Type : application/x-dosexec
HASH MD5 : 0f53160b1bbde0ab2ff31970e79a244e
HASH SHA1 : 87d2be245c1bd28a5a5c5ef711f80c773f2c766a
HASH SHA256 : aaf2277f2be9568226acb02c35dcfbba2ae47f95ae1ac9135b3976296dc4c6ae
VirusTotal Analys Report
This malware was submitted to VirusTotal, a service that combines engines of detections over 40 antivirus.
48 detection for 56 antivirus tested.
Antivirus detection : 2B8A.exe Win32:Crypt-QDF
Avast : Win32:Crypt-QDF
ESET-NOD32 : Win32/TrojanClicker.VB.NZZ
Panda : Trj/Genetic.gen
Kaspersky : Trojan.Win32.Inject.glzr
F-Secure : Gen:Variant.Symmi.35385
Comodo : UnclassifiedMalware
Malwarebytes Anti-Malware : Backdoor.Agent.RK
Antivir :
Norton : W32.IRCBot.NG
DrWeb :
GData : Gen:Variant.Symmi.35385
AVG : Clicker.BEXD