Trojan

Trojan.Kronos removal tips

Malware Removal

The Trojan.Kronos is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Kronos virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.Kronos?


File Info:

crc32: 52EC7AAA
md5: 5a67e5c4236e16b4ed8cf12576946eb0
name: 5A67E5C4236E16B4ED8CF12576946EB0.mlw
sha1: 53e9d58c1804400da85ff90012bd11cd38a1abfc
sha256: 31648a90be32f667e95884f91f95a1e52dd3404fd4b0b282baac1a6a28d8a8cd
sha512: 814f03fcb85ace0e89428206c439f38e4895b0a81b5dffc01f1d1d464b1bb3b34b61d18679b364b5dd0bfe57b6e1d00d50e4e2c22aba6886fd8bead45c34c0f7
ssdeep: 12288:vyxPJa2s86jofrWEuxjcZxyPq8tf8sQ+PRtj3lDsmMHj3N6eiaFmhL+Jig:vyxPJ/s86szWEuKiflOmMDhPEhL+l
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: (C)
InternalName: versees
FileVersion: 1.9.85.30
CompanyName: Luxoft
ProductName: fast Performing Depmod
FileDescription: fast Performing Depmod
OriginalFilename: Jagged CONSTRAINT.exe
Translation: 0x0409 0x04b0

Trojan.Kronos also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Bulz.256433
CAT-QuickHealTrojan.Wacatac
McAfeeRDN/Generic PWS.y
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Malicious.4!c
SangforMalware
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderGen:Variant.Bulz.256433
K7GWSpyware ( 00544e1d1 )
K7AntiVirusSpyware ( 00544e1d1 )
ArcabitTrojan.Bulz.D3E9B1
CyrenW32/Trojan.XXGX-2456
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Trojan-gen
CynetMalicious (score: 100)
KasperskyHEUR:Exploit.Win32.Shellcode.gen
AlibabaTrojanSpy:Win32/Kronosbot.ae776879
NANO-AntivirusExploit.Win32.Shellcode.idsboi
Ad-AwareGen:Variant.Bulz.256433
EmsisoftGen:Variant.Bulz.256433 (B)
F-SecureTrojan.TR/AD.Kronos.ipwuu
DrWebTrojan.PWS.Banker1.36635
TrendMicroTROJ_GEN.R011C0WLD20
McAfee-GW-EditionRDN/Generic PWS.y
FireEyeGeneric.mg.5a67e5c4236e16b4
SophosMal/Generic-S
IkarusTrojan.SuspectCRC
JiangminExploit.ShellCode.avf
AviraTR/AD.Kronos.ipwuu
MAXmalware (ai score=100)
Antiy-AVLTrojan[Exploit]/Win32.ShellCode
GridinsoftTrojan.Win32.Downloader.oa
MicrosoftTrojan:Win32/Ymacco.AA31
ZoneAlarmHEUR:Exploit.Win32.Shellcode.gen
GDataGen:Variant.Bulz.256433
AhnLab-V3Malware/Gen.Reputation.C4263545
VBA32BScope.Trojan.Diple
ALYacGen:Variant.Bulz.256433
MalwarebytesTrojan.Kronos
PandaTrj/CI.A
ESET-NOD32Win32/Spy.Kronosbot.B
TrendMicro-HouseCallTROJ_GEN.R011C0WLD20
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Generik.KQYXKHQ!tr
BitDefenderThetaGen:NN.ZexaF.34700.Xu0@augI7Rli
AVGWin32:Trojan-gen
Cybereasonmalicious.c18044
Paloaltogeneric.ml
Qihoo-360Generic/HEUR/QVM10.2.D266.Malware.Gen

How to remove Trojan.Kronos?

Trojan.Kronos removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment