Trojan

Trojan-Downloader.Win32.PsDownload.kjl removal

Malware Removal

The Trojan-Downloader.Win32.PsDownload.kjl is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Downloader.Win32.PsDownload.kjl virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Creates RWX memory
  • Authenticode signature is invalid

How to determine Trojan-Downloader.Win32.PsDownload.kjl?


File Info:

name: C472E57BD5CEB4414D86.mlw
path: /opt/CAPEv2/storage/binaries/d90414ee6ae1c0abd598c757844b0535141cd2cb544d0a0b0422706b31be8750
crc32: 139730D9
md5: c472e57bd5ceb4414d86e74514cdc47d
sha1: cd50bcf00753f85abe4ec327b6a5b1259bbf59f1
sha256: d90414ee6ae1c0abd598c757844b0535141cd2cb544d0a0b0422706b31be8750
sha512: 3d78ddaed12d9f7ca8212502c698ae46e3458bd4e493107c48862a87f557d3b8149d709667ab6dbd484a661128550f4dbac83a24a0596b6ca544f43aff21fac7
ssdeep: 1536:zwpwuOs9hffgcHUE1DAJHpSeVNqd5aTB2Uuj55NFVOsaWCEsW0CtcdaWv1Yn:zvuj9hQbERA/Nqd5aTB2fj5Ksfg1aWvY
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T102736B43B1D29432E5721E325874D9B09A3FF8211FA5DE6B3745163A0F305C29E26E7B
sha3_384: a174540393d8dc281218f6b738fe77df7fa67c4bdfbdfcc9620a2c5fcbc5aeb5bfb8ff8e19200ee038bf145e099fab53
ep_bytes: e8c5030000e974feffff558bec6a00ff
timestamp: 2021-12-07 02:53:04

Version Info:

0: [No Data]

Trojan-Downloader.Win32.PsDownload.kjl also known as:

MicroWorld-eScanTrojan.GenericKD.38210964
FireEyeTrojan.GenericKD.38210964
ALYacTrojan.GenericKD.38210964
SangforTrojan.Win32.Save.a
AlibabaTrojanDownloader:Win32/PsDownload.dc9584f7
BitDefenderThetaGen:NN.ZexaF.34084.euW@aCjbMOai
TrendMicro-HouseCallTROJ_FRS.VSNTL721
AvastWin32:Malware-gen
KasperskyTrojan-Downloader.Win32.PsDownload.kjl
BitDefenderTrojan.GenericKD.38210964
Ad-AwareTrojan.GenericKD.38210964
SophosMal/Generic-S
TrendMicroTROJ_FRS.VSNTL721
McAfee-GW-EditionArtemis
EmsisoftTrojan.GenericKD.38210964 (B)
GDataTrojan.GenericKD.38210964
JiangminTrojan.KillMBR.ao
AviraTR/Dldr.Agent.vabms
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
McAfeeGenericRXAA-AA!C472E57BD5CE
MAXmalware (ai score=89)
MalwarebytesTrojan.Meterpreter
APEXMalicious
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/PossibleThreat
AVGWin32:Malware-gen

How to remove Trojan-Downloader.Win32.PsDownload.kjl?

Trojan-Downloader.Win32.PsDownload.kjl removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment