Trojan

Trojan-PSW.Win32.Azorult.ajge information

Malware Removal

The Trojan-PSW.Win32.Azorult.ajge is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-PSW.Win32.Azorult.ajge virus can do?

  • Executable code extraction
  • Creates RWX memory
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Portuguese (Brazilian)
  • The binary likely contains encrypted or compressed data.
  • Attempts to modify proxy settings
  • Collects information to fingerprint the system

Related domains:

z.whorecord.xyz
nsabeau.com.my
a.tomx.xyz

How to determine Trojan-PSW.Win32.Azorult.ajge?


File Info:

crc32: FAEA468C
md5: 4a0934380762fc3e4e27c3df1f169435
name: upd.exe
sha1: a029a18d955bd31617d4b2b0e7a8c9a1d3e03924
sha256: cf3eb2d8ce19ec010a213ce52eae63a669ffff2112431b21f14fe84148380e9b
sha512: 452aad9d97e3a1cecf2c075696e03f50db91ede9d45378e1602313b36aa086088a6bee2449f1cf406b4de1dcde16063fd31a361fe2cd20fd0e91335b193a852e
ssdeep: 6144:G5TCgCkdq2+17C/FOYzukUvX1TxTlUCnnorIQHj334:G5Tf1M2+17CtOYzukUPBxTlUCniIOjH
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

Translation: 0x0215 0x04e5

Trojan-PSW.Win32.Azorult.ajge also known as:

MicroWorld-eScanTrojan.GenericKD.32949451
FireEyeGeneric.mg.4a0934380762fc3e
Qihoo-360HEUR/QVM10.1.9A35.Malware.Gen
CylanceUnsafe
SangforMalware
BitDefenderTrojan.GenericKD.32949451
K7GWTrojan ( 0055ed691 )
CrowdStrikewin/malicious_confidence_100% (W)
Invinceaheuristic
GDataTrojan.GenericKD.32949451
KasperskyTrojan-PSW.Win32.Azorult.ajge
AegisLabTrojan.Multi.Generic.4!c
AvastWin32:MalwareX-gen [Trj]
Ad-AwareTrojan.GenericKD.32949451
SophosMal/Generic-S
DrWebTrojan.DownLoader32.48507
McAfee-GW-EditionGenericRXJL-HP!4A0934380762
EmsisoftTrojan.GenericKD.32949451 (B)
SentinelOneDFI – Malicious PE
WebrootW32.Trojan.Gen
AviraTR/AD.MoksSteal.xiiao
MAXmalware (ai score=85)
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D1F6C4CB
ZoneAlarmUDS:DangerousObject.Multi.Generic
MicrosoftTrojan:Win32/Wacatac.D!ml
AhnLab-V3Trojan/Win32.MalPe.R309623
Acronissuspicious
McAfeeGenericRXJL-HP!4A0934380762
APEXMalicious
ESET-NOD32a variant of Win32/Kryptik.HAFU
RisingTrojan.Kryptik!1.C1B6 (CLOUD)
IkarusTrojan.Win32.Crypt
eGambitUnsafe.AI_Score_99%
AVGWin32:MalwareX-gen [Trj]
Cybereasonmalicious.d955bd
PandaTrj/GdSda.A

How to remove Trojan-PSW.Win32.Azorult.ajge?

Trojan-PSW.Win32.Azorult.ajge removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment