Spy Trojan

Trojan-Spy.Win32.Xegumumune.cxk malicious file

Malware Removal

The Trojan-Spy.Win32.Xegumumune.cxk is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Spy.Win32.Xegumumune.cxk virus can do?

  • Sniffs keystrokes
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan-Spy.Win32.Xegumumune.cxk?


File Info:

crc32: E50B1EBE
md5: 56c253a6b21c7ee90792cbafc102fec3
name: 56C253A6B21C7EE90792CBAFC102FEC3.mlw
sha1: f4b9baab69ae97747a4717e78b310bd8288042af
sha256: 0fe9fbce0728180aff216c6a39aa102c83735fd28d0d8abd02073d0df1aa02b8
sha512: b5f5a0b776ca95f23276f3f0540ed88edb97cbdc92dfd61b7bb445dafed6c852b0f75c327900634b216a9e7191536b72280dc1d746eb723f2349180b6b534df7
ssdeep: 384:qqVBkaKMKxKSrBgon/rN9GpFQCNjmGkLcW3:/E8fSrtn/r7GpGCNKLN
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2012 Microsoft Corporation
InternalName: mdua.exe
FileVersion: 7.2
CompanyName: Microsoft Corporation
PrivateBuild:
LegalTrademarks:
Comments:
ProductName: Windows Services and Controller App
SpecialBuild:
ProductVersion: 7.2
FileDescription: Windows Services and Controller App
OriginalFilename: mdua.exe
Translation: 0x0409 0x04b0

Trojan-Spy.Win32.Xegumumune.cxk also known as:

CAT-QuickHealTrojanspy.Xegumumune
ALYacTrojan.GenericKD.33282518
ZillyaTrojan.Xegumumune.Win32.244
AlibabaTrojanSpy:Win32/Xegumumune.5559da09
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
CyrenW32/Application.BDSR-2884
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Trojan-gen
KasperskyTrojan-Spy.Win32.Xegumumune.cxk
BitDefenderTrojan.GenericKD.33282518
MicroWorld-eScanTrojan.GenericKD.33282518
TencentWin32.Trojan-spy.Xegumumune.Sxok
Ad-AwareTrojan.GenericKD.33282518
SophosGeneric PUA PE
ComodoMalware@#1gogoqr7w3yz
BitDefenderThetaGen:NN.ZexaCO.34688.cq0@a0kLvvni
TrendMicroTROJ_GEN.R011C0WKA20
McAfee-GW-EditionArtemis!Trojan
FireEyeTrojan.GenericKD.33282518
EmsisoftTrojan.GenericKD.33282518 (B)
JiangminTrojan/Yakes.lmc
WebrootW32.Trojan.Gen
Antiy-AVLTrojan[Spy]/Win32.Xegumumune
MicrosoftTrojan:Win32/Occamy.C0F
ArcabitTrojan.Generic.D1FBD9D6
AegisLabTrojan.Win32.Xegumumune.trcL
ZoneAlarmTrojan-Spy.Win32.Xegumumune.cxk
GDataTrojan.GenericKD.33282518
TACHYONTrojan-Spy/W32.Xegumumune.32768
AhnLab-V3Malware/Win32.Generic.C3983258
McAfeeArtemis!56C253A6B21C
MAXmalware (ai score=89)
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R011C0WKA20
MaxSecureTrojan.Malware.74190274.susgen
FortinetW32/PWS.Y!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Trojan-Spy.Win32.Xegumumune.cxk?

Trojan-Spy.Win32.Xegumumune.cxk removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment