Trojan

What is “JS:Trojan.Cryxos.3662”?

Malware Removal

The JS:Trojan.Cryxos.3662 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What JS:Trojan.Cryxos.3662 virus can do?

  • Injection (inter-process)
  • Injection with CreateRemoteThread in a remote process
  • Performs some HTTP requests
  • Uses Windows utilities for basic functionality
  • A potential decoy document was displayed to the user
  • Network activity detected but not expressed in API logs
  • Harvests information related to installed mail clients

How to determine JS:Trojan.Cryxos.3662?


File Info:

crc32: 2284C438
md5: 8040208fce8d913e8bfd30d079ff289b
name: upload_file
sha1: ef7a86909f86a1256d4dca3ae06f025eede7af5d
sha256: 7fbe90daab199a8095505ce3b7e9e13a23b638e84378bf5809e84fc91ee92a68
sha512: 9009bac53eeb69271a232a2d5a7b8e941ac1baf3fd46f4aa186e674d0af471725c1ac9898def16e5caa3e37e8bcbe01369dd51e026d617c7f63b6243a7d96cc8
ssdeep: 3072:fp1gHeX3reXff6ZKOBRY+7Q0bamKZtvEzKbURCqeGK/6SbIpklgVDSxGfmuZyas:fp1gHeX3reXff6ZKwRY+cM24RCqeGKZR
type: ASCII text, with very long lines, with CRLF line terminators

Version Info:

0: [No Data]

JS:Trojan.Cryxos.3662 also known as:

DrWebPowerShell.Packed.25
MicroWorld-eScanJS:Trojan.Cryxos.3662
FireEyeJS:Trojan.Cryxos.3662
CAT-QuickHealVBS.Agent.34768
AegisLabTrojan.Script.Agent.4!c
SangforMalware
CyrenJS/Agent.AGG4!Eldorado
SymantecTrojan.Gen.NPE
TrendMicro-HouseCallTROJ_FRS.0NA103JT20
AvastJS:ADODB-BL [Expl]
ClamAVTxt.Packed.Cryxos-7111887-0
KasperskyTrojan.Script.Agent.br
BitDefenderJS:Trojan.Cryxos.3662
NANO-AntivirusExploit.Script.Nemucod.dzzhbf
TencentScript.Trojan.Agent.Dxci
Ad-AwareJS:Trojan.Cryxos.3662
ComodoWorm.JS.Vjworm.AK@8cyo73
TrendMicroTROJ_FRS.0NA103JT20
EmsisoftJS:Trojan.Cryxos.3662 (B)
MicrosoftTrojan:VBS/Irsaz.B
ArcabitJS:Trojan.Cryxos.DE4E
ZoneAlarmTrojan.Script.Agent.br
GDataJS:Trojan.Cryxos.3662
AhnLab-V3Backdoor/JS.Agent.S1250
ALYacJS:Trojan.Cryxos.3662
MAXmalware (ai score=82)
ESET-NOD32JS/Vjworm.BM
RisingBackdoor.Houdini/JS!1.C2BA (CLASSIC)
IkarusWorm.JS.Vjworm
AVGJS:ADODB-BL [Expl]
Qihoo-360virus.js.qexvmc.1

How to remove JS:Trojan.Cryxos.3662?

JS:Trojan.Cryxos.3662 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment