Trojan

What is “Trojan.Rozena (A)”?

Malware Removal

The Trojan.Rozena (A) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Rozena (A) virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Rozena (A)?


File Info:

crc32: EDA53C00
md5: 7ab4800defb15bca585ab9ee99d84c7c
name: 7AB4800DEFB15BCA585AB9EE99D84C7C.mlw
sha1: 6283068c86584d04b2737ec78da220d87b4dc374
sha256: 39ace4159c008a9fc799f6003558b142ea9bfb2f24a4fea831a4f21a0b6d89ee
sha512: f67089df88aa33258d7b346762e58c3112aca3bcbd6f03fb799fe3d8d57a8d29cdf145371ac62206140d40b4aa917ab3656d52c71a58fa8e7e7a63ea56895b76
ssdeep: 192:ADH+DgGK83SxHn2OQ/dmBI4KBfTgir+xzyWAw9lbqUqV/Qjo7AGa:AT+kGKqbOCdWIVBff+xzy+/fCXAn
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Trojan.Rozena (A) also known as:

K7AntiVirusTrojan ( 005622831 )
Elasticmalicious (high confidence)
DrWebTrojan.Inject3.2700
CynetMalicious (score: 100)
ALYacGen:Variant.Fugrafa.858
CylanceUnsafe
ZillyaTrojan.Rozena.Win32.99309
SangforTrojan.Win32.Save.a
K7GWTrojan ( 005622831 )
Cybereasonmalicious.defb15
CyrenW32/Diple.G.gen!Eldorado
SymantecBackdoor.Cobalt
ESET-NOD32a variant of Win32/Rozena.AMZ
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Trojan.CobaltStrike-7899872-1
KasperskyHEUR:Trojan.Win32.CobaltStrike.gen
BitDefenderGen:Variant.Fugrafa.858
NANO-AntivirusTrojan.Win32.Inject3.horsiq
ViRobotTrojan.Win32.Cobalt.14336.J
MicroWorld-eScanGen:Variant.Fugrafa.858
TencentMalware.Win32.Gencirc.10ce3d9a
Ad-AwareGen:Variant.Fugrafa.858
SophosML/PE-A + ATK/Cobalt-A
TrendMicroTrojan.Win32.COBALT.SM
McAfee-GW-EditionTrojan-Cobalt!7AB4800DEFB1
FireEyeGeneric.mg.7ab4800defb15bca
EmsisoftTrojan.Rozena (A)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.ftawl
AviraTR/Crypt.XPACK.Gen7
Antiy-AVLTrojan/Generic.ASMalwS.30BBA6D
MicrosoftTrojan:Win32/Cobaltstrike.MK!MTB
GridinsoftTrojan.Win32.Heur.oa!s1
ArcabitTrojan.Fugrafa.858
ZoneAlarmHEUR:Trojan.Win32.CobaltStrike.gen
GDataGen:Variant.Fugrafa.858
TACHYONTrojan/W32.Agent.14336.WO
AhnLab-V3Trojan/Win32.CobaltStrike.R329694
McAfeeTrojan-Cobalt!7AB4800DEFB1
MAXmalware (ai score=84)
VBA32TScope.Malware-Cryptor.SB
MalwarebytesTrojan.CobaltStrike
TrendMicro-HouseCallTrojan.Win32.COBALT.SM
RisingBackdoor.CobaltStrike!1.D049 (CLASSIC)
YandexTrojan.GenAsa!/C5jzoNrl5s
IkarusTrojan.Win32.Rozena
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Generic.AP.118EACE!tr
AVGWin32:Trojan-gen

How to remove Trojan.Rozena (A)?

Trojan.Rozena (A) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment