Malware

Dropped:Win32.Elkern.B removal tips

Malware Removal

The Dropped:Win32.Elkern.B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Dropped:Win32.Elkern.B virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Dropped:Win32.Elkern.B?


File Info:

name: 726834739383C3B39359.mlw
path: /opt/CAPEv2/storage/binaries/6fb581c92e301a1b81c8e6d7418ca93df519ea04ff2ca0c6e35a289e23f10900
crc32: E3F7D0A5
md5: 726834739383c3b393597f1850c16504
sha1: 927e8e08513f9c6002c6f6f0d74c6142fd51a1c0
sha256: 6fb581c92e301a1b81c8e6d7418ca93df519ea04ff2ca0c6e35a289e23f10900
sha512: 3b13ffec0045b07ace460049898423f77e2287c9bc63de0ab1f14fc7e74763f2eebdd53602d4d9b5956d900abdb16a47c461b6f7a3ce890dec03bfcf82c28446
ssdeep: 1536:zaWLF1kxTnUI4CFPtv6iSJnaGlbVxhovjDsV:zaWExTnUTCFPtvanaGlbVxhovj4
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11F839E23BD908073C496CF70126D9B218AFFD8320756E193D7169A5B3D60AF1DA3974B
sha3_384: df69409f92087053d8cc5e473e8f1db46dff46616c77724610acd78fdac6c20172fba51a032cfeddc894e445640eae41
ep_bytes: 558bec6aff6838d240006874a8400064
timestamp: 2002-01-18 01:22:13

Version Info:

0: [No Data]

Dropped:Win32.Elkern.B also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanDropped:Win32.Elkern.B
CAT-QuickHealW32.Klez.H
SkyhighBehavesLike.Win32.Klez.mm
McAfeeW32/Klez.f@MM
MalwarebytesKlez.Worm.FileInfector.DDS
VIPREDropped:Win32.Elkern.B
SangforSuspicious.Win32.Save.ins
K7AntiVirusEmailWorm ( 000805561 )
K7GWEmailWorm ( 000805561 )
Cybereasonmalicious.39383c
BaiduWin32.Worm.Klez.a
VirITWorm.Win32.Klez.J
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Klez
APEXMalicious
TrendMicro-HouseCallWORM_KLEZ.GEN
ClamAVWin.Worm.Klez-2
KasperskyEmail-Worm.Win32.Klez.j
BitDefenderDropped:Win32.Elkern.B
NANO-AntivirusTrojan.Win32.Klez.fwaj
SUPERAntiSpywareWorm.Klez
AvastWin32:Klez-E [Wrm]
TencentWorm.Win32.Klez.c
EmsisoftDropped:Win32.Elkern.B (B)
F-SecureWorm.WORM/Klez.E
DrWebWin32.HLLM.Klez.6
ZillyaWorm.Klez.Win32.4
TrendMicroWORM_KLEZ.GEN
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.726834739383c3b3
SophosW32/Klez-Fam
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=88)
JiangminI-Worm/Klez.h
GoogleDetected
AviraWORM/Klez.E
VaristW32/Klez.J@mm
Antiy-AVLWorm[Email]/Win32.Klez
Kingsoftmalware.kb.a.1000
MicrosoftWorm:Win32/Klez.G@mm
XcitiumTrojWare.Win32.Trojan.Agent.Gen@67u02
ArcabitWin32.Elkern.B
ViRobotI-Worm.Win32.Klez-gen
ZoneAlarmEmail-Worm.Win32.Klez.j
GDataWin32.Trojan.PSE.11SQ9WV
CynetMalicious (score: 100)
AhnLab-V3Win32/Klez.worm.I
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.36802.fqY@aa5cMjd
VBA32BScope.Trojan.Meredrop
Cylanceunsafe
PandaW32/Klez.H
ZonerWorm.Win32.Klez.27775
RisingWorm.Klez!1.A1CB (CLASSIC)
YandexTrojan.GenAsa!AMX6vz3TVj8
IkarusEmail-Worm.Win32.Klez.J
MaxSecureWorm.W32.Klez.h
FortinetW32/Klez.fam@mm
AVGWin32:Klez-E [Wrm]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)
alibabacloudWorm:Win/Klez.3431e10f

How to remove Dropped:Win32.Elkern.B?

Dropped:Win32.Elkern.B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment