Trojan

Dropped:Trojan.Gunex.A malicious file

Malware Removal

The Dropped:Trojan.Gunex.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Dropped:Trojan.Gunex.A virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Creates a copy of itself

How to determine Dropped:Trojan.Gunex.A?


File Info:

name: 452EC0893DF68AA9E530.mlw
path: /opt/CAPEv2/storage/binaries/74a05b027afeb80a061e8ab5516d3690133081288635f609abcb49d37022033f
crc32: 1F212754
md5: 452ec0893df68aa9e530b9372b546cf4
sha1: 8708586e0101bb8aba20eb7ee13364e298cec4da
sha256: 74a05b027afeb80a061e8ab5516d3690133081288635f609abcb49d37022033f
sha512: 0afb65e61a12a601266326a9f9a0ca9c53409545367e3b59fef9119148dde881db632a1e3588a65d36836b590035cc9b3f75e2b893c4e7cf7d4de36daf024755
ssdeep: 384:w2hF5z+i6/oFbVAwqfWqXUhA/iyaWPZPgWWRfFW:ZrZ+DCVCfWqXUq/iyaWPBZWlFW
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T109628D5F5BA0652EC801013645369778136A970B5E4BD3CCFE2E6771A8BB0B25B0CF6B
sha3_384: 251b580a5dde17d7e68972175f35a40c39b614ce74237b5c77b273789cf807eb0ab1ed10798f616a76702aa445217031
ep_bytes: 60be008040008dbe0090ffff5783cdff
timestamp: 2007-07-30 21:35:01

Version Info:

0: [No Data]

Dropped:Trojan.Gunex.A also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanDropped:Trojan.Gunex.A
FireEyeGeneric.mg.452ec0893df68aa9
CAT-QuickHealTrojanSpy.Laqma.A4
ALYacDropped:Trojan.Gunex.A
CylanceUnsafe
ZillyaTrojan.AgentGen.Win32.76
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0055e3dd1 )
BitDefenderDropped:Trojan.Gunex.A
K7GWTrojan ( 0055e3dd1 )
Cybereasonmalicious.93df68
BaiduWin32.Rootkit.Agent.au
CyrenW32/Gunex.A.gen!Eldorado
SymantecTrojan Horse
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of Win32/Rootkit.Agent.NWA
APEXMalicious
ClamAVWin.Trojan.Generic-6323519-0
KasperskyTrojan.Win32.Agent.aia
NANO-AntivirusTrojan.Win32.Agent.eraoes
AvastWin32:Trojan-gen
TencentMalware.Win32.Gencirc.10b3bf75
Ad-AwareDropped:Trojan.Gunex.A
SophosML/PE-A + Troj/DownLd-BDS
ComodoTrojWare.Win32.Agent.aias@1pte18
DrWebTrojan.DownLoader.53066
VIPREDropped:Trojan.Gunex.A
TrendMicroTSPY_LAQMA.SMI
McAfee-GW-EditionBehavesLike.Win32.Generic.lc
Trapminemalicious.high.ml.score
EmsisoftDropped:Trojan.Gunex.A (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Agent.aedl
AviraTR/Dropper.Gen
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataDropped:Trojan.Gunex.A
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Agent.C58233
Acronissuspicious
McAfeegeneric!bg.g
MAXmalware (ai score=85)
VBA32BScope.Trojan.Agent
MalwarebytesTrojan.Agent
TrendMicro-HouseCallTSPY_LAQMA.SMI
RisingTrojan.Rootkit!1.AEDA (CLASSIC)
YandexTrojan.GenAsa!+6TEfonJ4XA
IkarusTrojan.Win32.Rootkit
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Dloader.BDS!tr
BitDefenderThetaAI:Packer.5F19D1C01B
AVGWin32:Trojan-gen
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Dropped:Trojan.Gunex.A?

Dropped:Trojan.Gunex.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment