Malware

Adrozek.692 removal instruction

Malware Removal

The Adrozek.692 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adrozek.692 virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine Adrozek.692?


File Info:

crc32: 5914B7EB
md5: eacf04b0299482e332f4ced49d105e1a
name: EACF04B0299482E332F4CED49D105E1A.mlw
sha1: 08973fe3cd77ee18be2c8b14e41cc06c0b64ea2d
sha256: 6555e0aeeab584c18dd407de6b24cb36b88e1c4b252ea7b39ae7fa03d761395c
sha512: bb8320a767ce563efe57400fc525d6ed0704917850a1f251fe91ae8d6b1c2a59fab586edfb1587d96411d224c32e722c807552f4781306f9df7cf1649ec8b86a
ssdeep: 24576:jQBQ9pQbQ/DQFxQMZSXHQyPQeO329H0+e+y81Y9Lsw3BfYrDIuJFl6b4C126W:z1vBttoIy9xg/DJI4a
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: NCT Company Ltd. Copyright 1999 - 2003
InternalName: NCTAudioCompress2
FileVersion: 2,5,1,182
CompanyName: NCT Company Ltd.
LegalTrademarks: NCT Company Ltd.
ProductName: NCTAudioCompress2 Module
ProductVersion: 2,5,1,182
FileDescription: NCTAudioCompress2 ActiveX DLL
OriginalFilename: NCTAudioCompress2.DLL
Translation: 0x0409 0x04b0

Adrozek.692 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0056252b1 )
Elasticmalicious (high confidence)
DrWebTrojan.Siggen9.22670
ClamAVWin.Packed.Adrozek-9811562-0
ALYacGen:Variant.Adrozek.692
MalwarebytesAdware.DownloadAssistant
ZillyaTrojan.Kryptik.Win32.2588703
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaTrojan:Win32/Staser.b748d0ba
K7GWTrojan ( 0056252b1 )
Cybereasonmalicious.029948
CyrenW32/Agent.BXX.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HHUB
ZonerProbably Heur.ExeHeaderH
APEXMalicious
AvastWin32:AdwareX-gen [Adw]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Staser.gen
BitDefenderGen:Variant.Adrozek.692
NANO-AntivirusTrojan.Win32.Staser.iamkik
MicroWorld-eScanGen:Variant.Adrozek.692
TencentWin32.Trojan.Staser.Anpv
Ad-AwareGen:Variant.Adrozek.692
ComodoMalware@#3bx9olk9ibib4
BitDefenderThetaGen:NN.ZexaF.34236.kv0@aOpVFUij
VIPRETrojan.Win32.Generic!BT
FireEyeGeneric.mg.eacf04b0299482e3
EmsisoftGen:Variant.Adrozek.692 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.Gen
AviraTR/Crypt.Agent.gbqam
Antiy-AVLTrojan/Generic.ASMalwS.30F48B2
MicrosoftBrowserModifier:Win32/Adrozek
SUPERAntiSpywareTrojan.Agent/Gen-Staser
GDataGen:Variant.Adrozek.692
AhnLab-V3PUP/Win32.ICLoader.R353041
Acronissuspicious
VBA32BScope.Trojan.CryptInject
MAXmalware (ai score=85)
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.AA23 (CLASSIC)
IkarusPUA.ICLoader
FortinetW32/CoinMiner.GYQC!tr
AVGWin32:AdwareX-gen [Adw]
Paloaltogeneric.ml

How to remove Adrozek.692?

Adrozek.692 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment