Malware

Troj/Rozena-D removal guide

Malware Removal

The Troj/Rozena-D is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Troj/Rozena-D virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Troj/Rozena-D?


File Info:

crc32: 68811690
md5: 838b9a4245abe5d23c25d7d06bf69524
name: 838B9A4245ABE5D23C25D7D06BF69524.mlw
sha1: 347f72630448c07c99cab3daa58761e80919ddf6
sha256: e465402d2c71d4479b47729736f7ca7ec51d4e6341f90239c6e9aa5b18cc0f7b
sha512: 679e08bc658cac3f635498828cd65e82990cd38991d4330d0d4b51554b32a6e1c1973fecc07ebd5ad391e3acc585a3a87a895f24db6a5cee2720dfa0a2aca3e2
ssdeep: 96:vtcbQfgtZyZ0Kw1iaqML2EOh+uyj4po7yut+waoi8iBPqQLpmSGqQbbhJYhZsyX:vtcb/rutbEOhm44yE+wat8iBPGAUbqm
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x007f 0x04b0
LegalCopyright:
InternalName: test
FileVersion: 0.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName:
ProductVersion:
FileDescription:
OriginalFilename: test.exe

Troj/Rozena-D also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.36093828
FireEyeGeneric.mg.838b9a4245abe5d2
CAT-QuickHealTrojan.Generic
McAfeeTrojan-Veil-FOJU!838B9A4245AB
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
K7AntiVirusTrojan-Downloader ( 004b595d1 )
BitDefenderTrojan.GenericKD.36093828
K7GWTrojan-Downloader ( 004b595d1 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaGen:NN.ZemsilF.34804.am0@aq8j4A
CyrenW32/MSIL_Agent.JR.gen!Eldorado
SymantecBackdoor.Veilev
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojan:MSIL/Generic.65292e24
NANO-AntivirusTrojan.Win32.Kazy.dkjuiw
ViRobotTrojan.Win32.Z.Wacatac.7680.AF
TencentWin32.Trojan.Generic.Dztr
Ad-AwareTrojan.GenericKD.36093828
SophosTroj/Rozena-D
ComodoMalware@#12vtyfm3ayknq
F-SecureHeuristic.HEUR/AGEN.1107306
TrendMicroTROJ_GEN.R002C0OAC21
McAfee-GW-EditionTrojan-Veil-FOJU!838B9A4245AB
EmsisoftTrojan.GenericKD.36093828 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1107306
MicrosoftTrojan:Win32/Ditertag.A
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.GenericKD.36093828
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.RL_Generic.C4298502
VBA32TScope.Trojan.MSIL
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/TrojanDownloader.Small.SM
TrendMicro-HouseCallTROJ_GEN.R002C0OAC21
MAXmalware (ai score=81)
eGambitUnsafe.AI_Score_90%
FortinetW32/Generic.D!tr
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.fc8

How to remove Troj/Rozena-D?

Troj/Rozena-D removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment