Spy Trojan

Trojan-Spy.Win32.Stealer.cjpw removal instruction

Malware Removal

The Trojan-Spy.Win32.Stealer.cjpw is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Spy.Win32.Stealer.cjpw virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan-Spy.Win32.Stealer.cjpw?


File Info:

name: C6EE42C8F64CF3AA745C.mlw
path: /opt/CAPEv2/storage/binaries/728f9f4be02c9050c89fff8445dd705c13892ed8f69c645526b9cafff6acd8ea
crc32: 1D38E3F1
md5: c6ee42c8f64cf3aa745c9afb034f3020
sha1: 897ff9729d8cd387b9d9650fefd730f0c93a2dec
sha256: 728f9f4be02c9050c89fff8445dd705c13892ed8f69c645526b9cafff6acd8ea
sha512: 01685e1611a1e766cf8b75b65cea64af7e1555eb9a3af497c53e7c2700a12669d3ab436a45a7d5ff714067e5f3f159106e65f6d4fc851ce1333d7b5695ca0280
ssdeep: 6144:8Ld5mJO9hZ3vERuuS6T0WQ8evz/QBAiUAOnH1h7C8AMcTWffb6:8h5mIf3vERuuS6TsiUp1hW8n5b6
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1C974AF42F69384F2C52115B509E4DBB19E2BBC114B30C9E7ABA40B7E8E707D1FD7186A
sha3_384: 4a049099499f7257a715908f11f79fd70cc774aecef9cec5268a5a689a7636bd9450c83cda852850a13f1e9d02c12e4e
ep_bytes: e8b1050000e974feffff558bec8b4508
timestamp: 2022-08-05 20:01:41

Version Info:

0: [No Data]

Trojan-Spy.Win32.Stealer.cjpw also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Lazy.230758
FireEyeGeneric.mg.c6ee42c8f64cf3aa
McAfeeTrojan-FUPO!C6EE42C8F64C
CylanceUnsafe
VIPREGen:Variant.Lazy.230758
K7AntiVirusTrojan ( 00596a121 )
K7GWTrojan ( 00596a121 )
CyrenW32/S-3cb8c202!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HQJN
APEXMalicious
ClamAVWin.Keylogger.Fugrafa-9961658-0
KasperskyTrojan-Spy.Win32.Stealer.cjpw
BitDefenderGen:Variant.Lazy.230758
AvastWin32:PWSX-gen [Trj]
Ad-AwareGen:Variant.Lazy.230758
EmsisoftGen:Variant.Lazy.230758 (B)
McAfee-GW-EditionArtemis
Trapminemalicious.moderate.ml.score
SophosMal/Generic-S
GDataWin32.Trojan.PSE.BPP5K1
JiangminBackdoor.Bladabindi.ij
AviraTR/Crypt.Agent.eurix
MAXmalware (ai score=86)
Antiy-AVLTrojan/Generic.ASCommon.2AC
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.R509442
BitDefenderThetaGen:NN.ZexaF.34582.wqY@aOvVY8d
ALYacGen:Variant.Lazy.230758
MalwarebytesSpyware.Stealer
RisingTrojan.Generic@AI.100 (RDML:p1LI7QFl1up14mTdzbtEVg)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.FYKG!tr
AVGWin32:PWSX-gen [Trj]
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Trojan-Spy.Win32.Stealer.cjpw?

Trojan-Spy.Win32.Stealer.cjpw removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment