Malware

Should I remove “Chinky.6”?

Malware Removal

The Chinky.6 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Chinky.6 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Behavioural detection: Injection (inter-process)
  • Anomalous binary characteristics
  • Attempts to modify Explorer settings to prevent hidden files from being displayed

How to determine Chinky.6?


File Info:

name: 9DC14714060D40DDFBA1.mlw
path: /opt/CAPEv2/storage/binaries/9d18629a8f3df8c397e5577edfd4dcd2dd2eaf1dd49b9150e61702a0b6088854
crc32: 43DA218A
md5: 9dc14714060d40ddfba14af1728372ef
sha1: 447138a35fb8992baed44889d0f8a824e96a1caa
sha256: 9d18629a8f3df8c397e5577edfd4dcd2dd2eaf1dd49b9150e61702a0b6088854
sha512: 5a79bc7ecdfae85fc86bf3276fe21ce327501e9ed16610b55be4b18e6d463bb521062c83b0067f7e01aff4b19cbc05caaea48b3e7980caf60c81667b16cf034b
ssdeep: 1536:5yhdU1QWYKIpMar25r7uTP23LOK64cb4CGNBrdl/M4Jt/xjtWYrxR5NrkWQEP7e4:5yhC1Q6yi7a6LE7WTdl//PhWYbWilr
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1AAC3C52972D0F63BC525C6F83D1A43A4806DAD3415A1AD13F7D25F1AB3F2EA79222743
sha3_384: c26029b2fa2c86984acfbe2214a53427fbf442ead66caae95018f0d1bf2e19210d3a3d63fff32ad2e1a97e5c29e00ed7
ep_bytes: 6810314000e8eeffffff000000000000
timestamp: 2011-07-13 11:25:54

Version Info:

Translation: 0x0409 0x04b0
ProductName: XsqLZqGOE
FileVersion: 1.00
ProductVersion: 1.00
InternalName: lpxOjNaPQfgH
OriginalFilename: lpxOjNaPQfgH.exe

Chinky.6 also known as:

BkavW32.AIDetectMalware
LionicWorm.Win32.WBNA.lr3L
MicroWorld-eScanGen:Variant.Chinky.6
FireEyeGeneric.mg.9dc14714060d40dd
CAT-QuickHealTrojan.Beebone.D
McAfeeVBObfus.g
MalwarebytesGeneric.Worm.AutoRun.DDS
VIPREGen:Variant.Chinky.6
SangforTrojan.Win32.Save.a
K7AntiVirusEmailWorm ( 0054d10f1 )
BitDefenderGen:Variant.Chinky.6
K7GWEmailWorm ( 0054d10f1 )
CrowdStrikewin/malicious_confidence_100% (W)
BaiduWin32.Worm.VB.ov
VirITTrojan.Win32.SHeur3.CJKG
CyrenW32/S-1f59d479!Eldorado
SymantecW32.Changeup!gen35
Elasticmalicious (high confidence)
ESET-NOD32Win32/AutoRun.VB.AHZ
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Worm.Vobfus-7192126-0
KasperskyTrojan.Win32.VBKrypt.erlj
AlibabaMalware:Win32/km_2ff8.None
NANO-AntivirusTrojan.Win32.VBKrypt.dwyrsq
RisingWorm.Vobfus!8.10E (TFE:3:v6QtDsDFjQO)
TACHYONTrojan/W32.VBKrypt.126976.B
SophosMal/VB-XV
F-SecureTrojan.TR/ATRAPS.Gen2
DrWebTrojan.VbCrypt.60
ZillyaTrojan.VBKrypt.Win32.784921
TrendMicroMal_VBNA-7
McAfee-GW-EditionBehavesLike.Win32.VBObfus.cm
Trapminemalicious.moderate.ml.score
EmsisoftGen:Variant.Chinky.6 (B)
IkarusGen.Variant.Chinky
AviraTR/ATRAPS.Gen2
Antiy-AVLWorm/Win32.WBNA.gen
MicrosoftWorm:Win32/Vobfus.DA
ArcabitTrojan.Chinky.6
SUPERAntiSpywareTrojan.Agent/Gen-Backdoor
ZoneAlarmTrojan.Win32.VBKrypt.erlj
GDataGen:Variant.Chinky.6
GoogleDetected
AhnLab-V3Trojan/Win32.VBKrypt.R10081
Acronissuspicious
BitDefenderThetaAI:Packer.FF1727DD1F
ALYacGen:Variant.Chinky.6
MAXmalware (ai score=85)
DeepInstinctMALICIOUS
VBA32TScope.Trojan.VB
Cylanceunsafe
PandaGeneric Malware
ZonerTrojan.Win32.147029
TrendMicro-HouseCallMal_VBNA-7
TencentTrojan.Win32.Vbkrypt.pa
YandexTrojan.GenAsa!1Zt6lvffw2I
SentinelOneStatic AI – Malicious PE
FortinetW32/VBObfus.G!tr
AVGWin32:VB-ABDC [Drp]
Cybereasonmalicious.4060d4
AvastWin32:VB-ABDC [Drp]

How to remove Chinky.6?

Chinky.6 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment