Trojan

Trojan.Generic.KDV.260358 removal instruction

Malware Removal

The Trojan.Generic.KDV.260358 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.KDV.260358 virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Serbian
  • The binary likely contains encrypted or compressed data.
  • Executed a very long command line or script command which may be indicative of chained commands or obfuscation
  • Uses Windows utilities for basic functionality
  • Executed a process and injected code into it, probably while unpacking
  • Sniffs keystrokes
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Operates on local firewall’s policies and settings
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

Related domains:

xlongue.dyndns.biz
1xlongue.dyndns.biz
2xlongue.dyndns.biz
3xlongue.dyndns.biz
4xlongue.dyndns.biz
5xlongue.dyndns.biz
6xlongue.dyndns.biz
7xlongue.dyndns.biz
8xlongue.dyndns.biz
9xlongue.dyndns.biz
10xlongue.dyndns.biz
0xlongue.dyndns.biz

How to determine Trojan.Generic.KDV.260358?


File Info:

crc32: 1A696974
md5: a68f0a3ed43d8b2b869cc7fef400ae41
name: A68F0A3ED43D8B2B869CC7FEF400AE41.mlw
sha1: 0ac2c2b4facd0ad18ce4c5049fcb7d012ddfa807
sha256: dbfb621c137b0cd2e3262575ee4e398ad7ff8a33b16b462745e660e54835c758
sha512: 340f414a7a76192fb374cf04cc24fe5e4cef8f9201916f42e57a116a96ad5b8e5a4b7483dd440dca8ac280e9fbc46cf2187e4c3a211a60f02a17ce47d3a1c7c8
ssdeep: 12288:5n0osxT7QissntJA72KRRyHNHLqgdKZYB0D/qOx21i6fT6:t0jx5ss/62SgHNXqDtYimT6
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Trojan.Generic.KDV.260358 also known as:

BkavW32.AIDetectVM.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Generic.KDV.260358
FireEyeGeneric.mg.a68f0a3ed43d8b2b
CAT-QuickHealTrojan.Ircbrute.AZ6
McAfeeW32/IRCBot.gen.bs
CylanceUnsafe
VIPRETrojan.Win32.Injector.gvm (v)
AegisLabWorm.Win32.Ngrbot.lpoS
SangforMalware
K7AntiVirusTrojan ( 00542cd91 )
BitDefenderTrojan.Generic.KDV.260358
K7GWTrojan ( 00542cd91 )
Cybereasonmalicious.ed43d8
BaiduWin32.Trojan.Injector.jq
CyrenW32/Agent.KL.gen!Eldorado
SymantecW32.IRCBot
TotalDefenseWin32/Dorkbot.CK
APEXMalicious
AvastWin32:Dorkbot-BH [Trj]
ClamAVWin.Worm.Palevo-44
KasperskyTrojan.Win32.Inject.vcfz
AlibabaWorm:Win32/Ainslot.0461ace8
NANO-AntivirusTrojan.Win32.Floder.vfivg
ViRobotWorm.Win32.A.AutoRun.65493
RisingBackdoor.Win32.Fednu.qw (CLASSIC)
Ad-AwareTrojan.Generic.KDV.260358
EmsisoftTrojan.Generic.KDV.260358 (B)
ComodoTrojWare.Win32.Injector.hhv@4ay6dr
F-SecureWorm.WORM/Autorun.CAM.A
DrWebBackDoor.IRC.Bot.1405
ZillyaBackdoor.Floder.Win32.199
TrendMicroWORM_AUTORUN.AXF
McAfee-GW-EditionBehavesLike.Win32.IRCBot.gc
SophosML/PE-A + Mal/Inject-CEE
IkarusBackdoor.Poison
JiangminBackdoor/Ruskill.bf
AviraWORM/Autorun.CAM.A
MAXmalware (ai score=88)
Antiy-AVLWorm/Win32.Ngrbot
MicrosoftWorm:Win32/Ainslot.A
ArcabitTrojan.Generic.KDV.D3F906
ZoneAlarmTrojan.Win32.Inject.vcfz
GDataTrojan.Generic.KDV.260358
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.CSon.R6141
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34804.EyX@a003SacG
ALYacTrojan.Generic.KDV.260358
TACHYONTrojan/W32.Inject.500848
VBA32Trojan.Inject
MalwarebytesGeneric.Trojan.Dropper.DDS
PandaW32/P2PWorm.QD
ESET-NOD32a variant of Win32/Injector.BDZW
TrendMicro-HouseCallWORM_AUTORUN.AXF
TencentMalware.Win32.Gencirc.10b2e758
YandexWorm.AutoRun!8ukklTTDI6g
SentinelOneStatic AI – Malicious PE – Worm
FortinetW32/Injector.KSK!tr
AVGWin32:Dorkbot-BH [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360Win32/Worm.f87

How to remove Trojan.Generic.KDV.260358?

Trojan.Generic.KDV.260358 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment