Trojan

Trojan.Dropper.Sfx.D information

Malware Removal

The Trojan.Dropper.Sfx.D is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Dropper.Sfx.D virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Anomalous binary characteristics

Related domains:

QoFYcfeviHWXwKVRezMgnspvdqUx.QoFYcfeviHWXwKVRezMgnspvdqUx

How to determine Trojan.Dropper.Sfx.D?


File Info:

crc32: 8C467CA1
md5: 60f36698da0149f7c90516b142c8e409
name: 60F36698DA0149F7C90516B142C8E409.mlw
sha1: b1b598dc4a54bd16006c156d314f4ef973399042
sha256: 7417902fc14aacbbbaf924e2e9f6c6cf36d38f9b10ca13f456d9a429f81a15ba
sha512: 5b89d776483ce73527e02a16f57e6fe68fa49e0fb06dc048e70eb4b6ffb85fdbdd6c1c594b200fdc72dc0d98d310a16606d7e8c03b4e913b7541307f6f5207da
ssdeep: 49152:G1qUuNq1dl7j99fCKMSAnY/7IxIeAHNws73yX/RjUom:G1E2dl7jXfCXSCGAILSszcZu
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2005-2016 Oleg N. Scherbakov
InternalName: 7ZSfxMod
FileVersion: 1.7.0.3900
CompanyName: Oleg N. Scherbakov
PrivateBuild: April 1, 2016
ProductName: 7-Zip SFX
ProductVersion: 1.7.0.3900
FileDescription: 7z Setup SFX (x86)
OriginalFilename: 7ZSfxMod_x86.exe
Translation: 0x0000 0x04b0

Trojan.Dropper.Sfx.D also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0057a8111 )
CynetMalicious (score: 100)
ALYacTrojan.Dropper.Sfx.D
SangforBackdoor.Win32.Agent.myuacu
CrowdStrikewin/malicious_confidence_80% (W)
AlibabaBackdoor:Win32/Generic.5b244976
K7GWTrojan ( 0057a8111 )
CyrenW32/Trojan.KURW-3013
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Agent.ACXU
AvastFileRepMalware
KasperskyBackdoor.Win32.Agent.myuacu
BitDefenderTrojan.Dropper.Sfx.D
NANO-AntivirusTrojan.Win32.Generic.iuoovx
MicroWorld-eScanTrojan.Dropper.Sfx.D
TencentWin32.Backdoor.Agent.Wpjn
Ad-AwareTrojan.Dropper.Sfx.D
SophosMal/Generic-S
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.60f36698da0149f7
EmsisoftTrojan.Dropper (A)
WebrootPua.Opencandy
eGambitPE.Heur.InvalidSig
GDataTrojan.Dropper.Sfx.D
AhnLab-V3Trojan/Win.Generic.R418541
McAfeeArtemis!60F36698DA01
MAXmalware (ai score=86)
MalwarebytesTrojan.Dropper.Generic
PandaTrj/Agent.ALS
TrendMicro-HouseCallTROJ_GEN.R011C0WE121
RisingTrojan.HiddenRun/SFX!1.D2BC (CLASSIC)
IkarusTrojan.Autoit.Agent
FortinetW32/Agent.ACZZ!tr
AVGFileRepMalware

How to remove Trojan.Dropper.Sfx.D?

Trojan.Dropper.Sfx.D removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment