Malware

BrowserModifier:Win32/Adrozek removal guide

Malware Removal

The BrowserModifier:Win32/Adrozek is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BrowserModifier:Win32/Adrozek virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine BrowserModifier:Win32/Adrozek?


File Info:

crc32: 785B3EC8
md5: bfde5acda43a0089c34568a3822abca1
name: BFDE5ACDA43A0089C34568A3822ABCA1.mlw
sha1: 9dc3126c72a2ff0051f85b4c302b63699838ecef
sha256: cba3a0aa5ea70ae87509ba595828de2273d29418bfca76d9f651d87ddc7f7fe9
sha512: 3854cb8eb3fe690b74bf778f678e44b110acada29a2e0adc1ff3a965dc64a9a86faf89c32295fe5d729f484399fe498d1d099049879ecf7c4728b462f541c5f8
ssdeep: 49152:MhyVh+ejo0wlvHaEnncK0ytPMyYuGjqPGfgvkq1Vx6jB5f+JZOMmPMh:MUdEvHarKZtPMyfsqPncq1izEZZsW
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

BrowserModifier:Win32/Adrozek also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.304238
FireEyeGeneric.mg.bfde5acda43a0089
ALYacGen:Variant.Zusy.304238
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Razy.a!c
SangforMalware
K7AntiVirusTrojan ( 0056252b1 )
BitDefenderGen:Variant.Zusy.304238
K7GWTrojan ( 0056252b1 )
Cybereasonmalicious.c72a2f
TrendMicroTROJ_GEN.R002C0DKH20
CyrenW32/FakeAlert.FY.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:AdwareX-gen [Adw]
KasperskyHEUR:Trojan-Downloader.Win32.Razy.pef
AlibabaTrojanDownloader:Win32/ICLoader.2a76f9a2
TencentWin32.Trojan-downloader.Razy.Plba
Ad-AwareGen:Variant.Zusy.304238
EmsisoftGen:Variant.Zusy.304238 (B)
ComodoMalware@#2c856j26zhysk
F-SecureHeuristic.HEUR/AGEN.1135761
DrWebTrojan.PWS.Stealer.28354
InvinceaTroj/Agent-BEQV
McAfee-GW-EditionBehavesLike.Win32.Generic.vc
SophosTroj/Agent-BEQV
IkarusTrojan.Win32.Crypt
JiangminTrojanDownloader.Razy.dgj
AviraHEUR/AGEN.1135761
MAXmalware (ai score=88)
MicrosoftBrowserModifier:Win32/Adrozek
GridinsoftTrojan.Win32.Downloader.oa
ArcabitTrojan.Zusy.D4A46E
ZoneAlarmHEUR:Trojan-Downloader.Win32.Razy.pef
GDataGen:Variant.Zusy.304238
CynetMalicious (score: 100)
AhnLab-V3PUP/Win32.ICLoader.R338540
McAfeeTrojan-FSKK!BFDE5ACDA43A
VBA32TrojanDownloader.Razy
MalwarebytesAdware.Agent.KHM.Generic
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Kryptik.HAWC
TrendMicro-HouseCallTROJ_GEN.R002C0DKH20
RisingTrojan.Kryptik!1.AA23 (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.HARA!tr
BitDefenderThetaGen:NN.ZexaF.34634.uAW@aqOHXRpi
AVGWin32:AdwareX-gen [Adw]
CrowdStrikewin/malicious_confidence_80% (D)
Qihoo-360Generic/HEUR/QVM07.1.57EA.Malware.Gen

How to remove BrowserModifier:Win32/Adrozek?

BrowserModifier:Win32/Adrozek removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment