Trojan

How to remove “Trojan-PSW.Win32.Azorult.amrt”?

Malware Removal

The Trojan-PSW.Win32.Azorult.amrt is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-PSW.Win32.Azorult.amrt virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Attempts to modify proxy settings
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
www.oronsuuts.com
a.tomx.xyz

How to determine Trojan-PSW.Win32.Azorult.amrt?


File Info:

crc32: 1A3E1BA8
md5: 579fb837b5492c2e7bb0c296c31373ef
name: coronovir.exe
sha1: e11e4862ebd45cd7d807ca338b5561c907204d4d
sha256: 4c4baa5f3092b81c3effed549b24e32018fcd5f48e422c2d7fec1bb3f31f768a
sha512: 26b6d08310a06b5b9e584337789b402b418f6ce6a2706694dcab20918162609e26ceb0725c2f81bdf38089a76ca09096938736846b868dd139e81132f3821344
ssdeep: 3072:5PO24gJ5Ia7m0WGx9Fia+lWOkvp53piIGCE1jrE95Kw+NPlI0pv:YTa7yGbca+lWF53ABjrRw+plJp
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan-PSW.Win32.Azorult.amrt also known as:

MicroWorld-eScanTrojan.GenericKDZ.65554
FireEyeGeneric.mg.579fb837b5492c2e
Qihoo-360HEUR/QVM10.1.FB6D.Malware.Gen
McAfeeArtemis!579FB837B549
CylanceUnsafe
SangforMalware
K7AntiVirusTrojan ( 0056281a1 )
BitDefenderTrojan.GenericKDZ.65554
K7GWTrojan ( 0056281a1 )
CrowdStrikewin/malicious_confidence_100% (W)
Invinceaheuristic
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:PWSX-gen [Trj]
GDataWin32.Trojan-Stealer.Azorult.0BYRNE
KasperskyTrojan-PSW.Win32.Azorult.amrt
AlibabaTrojanPSW:Win32/Azorult.fee3bc8c
ViRobotTrojan.Win32.Z.Kryptik.203264.DK
AegisLabTrojan.Win32.Azorult.i!c
RisingRansom.Genasom!8.293 (CLOUD)
Endgamemalicious (high confidence)
EmsisoftTrojan.GenericKDZ.65554 (B)
F-SecureTrojan.TR/Kryptik.mpqdr
McAfee-GW-EditionBehavesLike.Win32.MultiPlug.ch
Trapminemalicious.high.ml.score
SophosMal/RyPack-A
IkarusWin32.Outbreak
AviraTR/Kryptik.mpqdr
MAXmalware (ai score=85)
ArcabitTrojan.Generic.D10012
ZoneAlarmTrojan-PSW.Win32.Azorult.amrt
MicrosoftRansom:Win32/Genasom.BA!MTB
AhnLab-V3Trojan/Win32.MalPe.R329073
Acronissuspicious
ALYacTrojan.GenericKDZ.65554
Ad-AwareTrojan.GenericKDZ.65554
MalwarebytesSpyware.Vidar
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Kryptik.HCAM
TrendMicro-HouseCallTROJ_GEN.R002H0CCI20
TencentWin32.Trojan-qqpass.Qqrob.Swvf
SentinelOneDFI – Suspicious PE
FortinetW32/Kryptik.HBYA!tr
BitDefenderThetaAI:Packer.32D8856F1F
AVGWin32:PWSX-gen [Trj]
Cybereasonmalicious.7b5492
Paloaltogeneric.ml
MaxSecureTrojan.Malware.300983.susgen

How to remove Trojan-PSW.Win32.Azorult.amrt?

Trojan-PSW.Win32.Azorult.amrt removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment