Malware

Should I remove “Mayachok.1”?

Malware Removal

The Mayachok.1 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mayachok.1 virus can do?

  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Attempts to interact with an Alternate Data Stream (ADS)
  • Anomalous binary characteristics

How to determine Mayachok.1?


File Info:

name: E087D594CB74C60A4104.mlw
path: /opt/CAPEv2/storage/binaries/852241d3c0bb3cc4c1cca6a9638ae5103fe49bfbc1c7e1ab6c370a738d713f58
crc32: E13B9335
md5: e087d594cb74c60a41049655157bd871
sha1: 8059870c7692d6384fd3db56a900268ac09b66f8
sha256: 852241d3c0bb3cc4c1cca6a9638ae5103fe49bfbc1c7e1ab6c370a738d713f58
sha512: 84000394b3ecceb08a9697509cc69c5ce4d33d7b1bdbee3cdbd7db47ceefe61026e61391970e3dc9ed2b0d5bf19ac79bcb491c3e5bf6172a3c95a7f9e830d621
ssdeep: 1536:eY8VTb0LRcn+Zz+M/r9TxXaNtvscUNsksq8Rs7izN+bpoEL:ed9QLRRZz+M/rivscKskszgpo2
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T154A3E11574948C13D19441BB2BE24E9AE7BBFD201361AD93760C7EBF39317A4E916383
sha3_384: c8b542cf3b1e7ae7185e017db0b67c3d915b656fda1aa42fd68c51b432ac3158ba1ee5da6a453262928ca5585e950490
ep_bytes: 558bec6aff6830314100687014410064
timestamp: 2011-10-19 06:25:46

Version Info:

0: [No Data]

Mayachok.1 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Cidox.lKM6
MicroWorld-eScanGen:Variant.Mayachok.1
FireEyeGeneric.mg.e087d594cb74c60a
SkyhighVundo.gen.ed
McAfeeVundo.gen.ed
Cylanceunsafe
ZillyaDropper.Cidox.Win32.1466
SangforSuspicious.Win32.Save.ins
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanDownloader:Win32/Vundo.15d56f40
K7GWTrojan ( 0035086b1 )
K7AntiVirusTrojan ( 0035086b1 )
BitDefenderThetaGen:NN.ZexaF.36802.gqW@aSFGsnek
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.TZG
APEXMalicious
AvastWin32:Cidox-H [Drp]
ClamAVWin.Dropper.Agent-36344
KasperskyUDS:Trojan-Dropper.Win32.Cidox.eae
BitDefenderGen:Variant.Mayachok.1
NANO-AntivirusTrojan.Win32.Cidox.brqolc
SophosTroj/Mdrop-DUM
F-SecureTrojan.TR/Mayachok.ezwie
DrWebTrojan.Mayachok.555
VIPREGen:Variant.Mayachok.1
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Mayachok.1 (B)
IkarusTrojan-Dropper.Win32.Cidox
JiangminTrojanDropper.Cidox.axl
ALYacGen:Variant.Mayachok.1
WebrootW32.Trojan.Gen
VaristW32/Lampa.C.gen!Eldorado
AviraTR/Mayachok.ezwie
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.Kryptik.tqz
Kingsoftmalware.kb.a.999
MicrosoftTrojan:Win32/Vundo.OD
XcitiumTrojWare.Win32.Cidox.AEX@4kw0re
ArcabitTrojan.Mayachok.1
ViRobotDropper.Cidox.Gen.B
GDataGen:Variant.Mayachok.1
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Menti.R14914
VBA32Trojan.Mayak.03
GoogleDetected
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/CI.A
TencentWin32.Trojan.Mayachok.Jajl
YandexTrojan.DR.Cidox!JPg2Vog3gr8
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.3242092.susgen
FortinetW32/Lampa.A!tr
AVGWin32:Cidox-H [Drp]
Cybereasonmalicious.4cb74c
DeepInstinctMALICIOUS
alibabacloudTrojan:Win/Mayachok.ezwie

How to remove Mayachok.1?

Mayachok.1 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment