Trojan

Trojan.Coroxy (file analysis)

Malware Removal

The Trojan.Coroxy is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Coroxy virus can do?

  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Coroxy?


File Info:

crc32: D19D4D5A
md5: 177f3023ad736fa45c52b45259175e70
name: 177F3023AD736FA45C52B45259175E70.mlw
sha1: 16c21613b0f30933dcc206cc9562cb95c28452c8
sha256: 45b9e820b3ab997c498a28d59601b1b72fbbf3b9415f8c75843ff24c2b250193
sha512: 1c38fb30f6a0eb7652fbc0dd4dc53ee01e9c3780196f9b243c50eabcec0914f51a6ad6e67156d53dc5a21014575adba4d26c61e3b2d08b71f9f80f8c0abc7dbd
ssdeep: 192:C2WjQTbZ1eBppvfj/j2+cPM3P+Q/tCvwSw3uM76V9bhHOkrUNOA:C2jTbZ0pj/vcqP+ctCYSw3GV9bhrUNO
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Coroxy also known as:

K7AntiVirusTrojan ( 00578fc91 )
LionicTrojan.Win32.Convagent.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Siggen13.5932
CynetMalicious (score: 100)
ALYacGen:Variant.Doina.8081
CylanceUnsafe
ZillyaTrojan.Coroxy.Win32.88
SangforTrojan.Win32.Convagent.gen
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaBackdoor:Win32/Coroxy.9f98284a
K7GWTrojan ( 00578fc91 )
Cybereasonmalicious.3ad736
CyrenW32/Threat-HLLSI-based!Maximus
SymantecBackdoor.SystemBC
ESET-NOD32a variant of Win32/Coroxy.D
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
ClamAVWin.Malware.Doina-9878360-0
KasperskyUDS:Trojan.Multi.GenericML.xnet
BitDefenderGen:Variant.Doina.8081
NANO-AntivirusTrojan.Win32.Coroxy.ivgrxs
ViRobotTrojan.Win32.Z.Coroxy.13824.K
MicroWorld-eScanGen:Variant.Doina.8081
TencentMalware.Win32.Gencirc.10ceb989
Ad-AwareGen:Variant.Doina.8081
SophosMal/Generic-S
TrendMicroTrojan.Win32.COROXY.SMYXBC3A
McAfee-GW-EditionBehavesLike.Win32.Generic.lm
FireEyeGeneric.mg.177f3023ad736fa4
EmsisoftGen:Variant.Doina.8081 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Multi.qr
AviraHEUR/AGEN.1111611
Antiy-AVLTrojan/Generic.ASMalwS.328A0D9
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftBackdoor:Win32/Coroxy.G!MTB
GridinsoftTrojan.Win32.Agent.dd!s1
ArcabitTrojan.Doina.D1F91
GDataGen:Variant.Doina.8081
TACHYONTrojan/W32.Convagent.13824
AhnLab-V3Trojan/Win.SystemBC.R366856
McAfeeGenericRXAA-FA!177F3023AD73
MAXmalware (ai score=100)
VBA32BScope.Trojan.Wacatac
MalwarebytesTrojan.Coroxy
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojan.Win32.COROXY.SMYXBC3A
RisingBackdoor.SystemBC!1.D22F (CLASSIC)
YandexTrojan.Coroxy!bg8rBBaYKs0
IkarusTrojan.Win32.Coroxy
MaxSecureTrojan.Malware.82199810.susgen
FortinetW32/Coroxy.D!tr
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml

How to remove Trojan.Coroxy?

Trojan.Coroxy removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment