Trojan

Should I remove “Trojan-Dropper.Win32.Kpavtoit.mx”?

Malware Removal

The Trojan-Dropper.Win32.Kpavtoit.mx is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Dropper.Win32.Kpavtoit.mx virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Trojan-Dropper.Win32.Kpavtoit.mx?


File Info:

crc32: BE940271
md5: 567b80721842535d6c2d1cdbd8fd7207
name: sl.exe
sha1: aff16c223d32c0bb958f177041900f4a7b431569
sha256: 58833e2d3c2c9721019ca379e9ff65e6d9bcc5db8efdc05d7c0ae53b6486c934
sha512: 2ec29eaa9e67e628f800072060d0abfd8adf291ade3f9511102950e04caf812938b6d44c9670b5d29e94603db9e7ae8347f90521732dd2d5a18ee015166b6751
ssdeep: 24576:du6J33O0c+JY5UZ+XC0kGso6FaPx9U5LKNw4YNEqH7B5WY:vu0c++OCvkGs9FaPx9CLkw4YNvH2Y
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0809 0x04b0

Trojan-Dropper.Win32.Kpavtoit.mx also known as:

McAfeeArtemis!567B80721842
CylanceUnsafe
AegisLabTrojan.Multi.Generic.4!c
CrowdStrikewin/malicious_confidence_60% (W)
MaxSecureTrojan.Malware.300983.susgen
K7AntiVirusTrojan ( 0055fddc1 )
Invinceaheuristic
SymantecPacked.Generic.548
ESET-NOD32a variant of Win32/Injector.Autoit.FAI
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan-Dropper.Win32.Kpavtoit.mx
AlibabaTrojan:Win32/Predator.026101c0
RisingTrojan.Obfus/Autoit!1.C075 (CLASSIC)
Endgamemalicious (high confidence)
F-SecureTrojan.TR/AD.MoksSteal.sewxk
DrWebTrojan.PWS.Siggen2.42832
TrendMicroTrojan.Win32.WACATAC.THBODBO
McAfee-GW-EditionBehavesLike.Win32.Downloader.tc
FortinetAutoIt/Injector.EZY!tr
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.567b80721842535d
IkarusTrojan-Spy.Keylogger.AgentTesla
AviraTR/AD.MoksSteal.sewxk
ZoneAlarmTrojan-Dropper.Win32.Kpavtoit.mx
MicrosoftTrojan:Win32/Predator.BC!MTB
AhnLab-V3Trojan/AU3.Wacatac.S1079
PandaTrj/CI.A
TrendMicro-HouseCallTrojan.Win32.WACATAC.THBODBO
GDataWin32.Trojan-Stealer.Azorult.W2WBJF
AVGFileRepMalware
Cybereasonmalicious.23d32c
Qihoo-360Win32/Trojan.Dropper.85f

How to remove Trojan-Dropper.Win32.Kpavtoit.mx?

Trojan-Dropper.Win32.Kpavtoit.mx removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment