Trojan

Trojan-PSW.Win32.Azorult.alno removal

Malware Removal

The Trojan-PSW.Win32.Azorult.alno is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-PSW.Win32.Azorult.alno virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Norwegian (Bokmal)
  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Attempts to modify proxy settings
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
ryvan000.xyz

How to determine Trojan-PSW.Win32.Azorult.alno?


File Info:

crc32: BE66441D
md5: ca195723977e76189582c2a0043b6600
name: him.exe
sha1: a2e3082afaca2deae4213ee2e1377e1bfbc3280c
sha256: 2c034b86d95a14c055352e95490ee2f26e8ed6c2fa066a2a548ca3dd39749b5b
sha512: 07a6bd3a682fc3843bab4de361c4ee685de179fa3cf419a51baf1cdd5c22ef39d53cacca6d8fe3a7dc4d7cc58744d6d711de18430751c36b1f0339159ee7371a
ssdeep: 3072:i7ghS8n4+779xBjzJCoL4eEhFUNeCTvghvt3DBrvlgtxCrRdlM1dp6mAF:XhS4779IGgwe7lt3NRgtsrR0dQ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0115 0x0099

Trojan-PSW.Win32.Azorult.alno also known as:

DrWebTrojan.PWS.Steam.17644
MicroWorld-eScanTrojan.GenericKD.33280010
Qihoo-360Win32/Trojan.PSW.676
McAfeeArtemis!CA195723977E
SangforMalware
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderTrojan.GenericKD.33280010
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HBDD
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan-PSW.Win32.Azorult.alno
NANO-AntivirusTrojan.Win32.Steam.hasjot
ViRobotTrojan.Win32.Z.Highconfidence.313856
RisingTrojan.Obfuscated!1.9A68 (CLASSIC)
Ad-AwareTrojan.GenericKD.33280010
EmsisoftTrojan.GenericKD.33280010 (B)
F-SecureTrojan.TR/AD.MoksSteal.biwhn
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.MultiPlug.fm
FortinetW32/Malicious_Behavior.VEX
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.ca195723977e7618
IkarusTrojan.Win32.Crypt
AviraTR/AD.MoksSteal.biwhn
MAXmalware (ai score=86)
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D1FBD00A
ZoneAlarmTrojan-PSW.Win32.Azorult.alno
MicrosoftTrojan:Win32/Wacatac.D!ml
AhnLab-V3Malware/Win32.Generic.R325924
Acronissuspicious
TencentWin32.Trojan-qqpass.Qqrob.Sxob
SentinelOneDFI – Malicious PE
GDataTrojan.GenericKD.33280010
AVGWin32:CrypterX-gen [Trj]
Cybereasonmalicious.afaca2
AvastWin32:CrypterX-gen [Trj]

How to remove Trojan-PSW.Win32.Azorult.alno?

Trojan-PSW.Win32.Azorult.alno removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment