Trojan

Should I remove “Trojan.Win32.AntiAV.czej”?

Malware Removal

The Trojan.Win32.AntiAV.czej is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.AntiAV.czej virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial binary language: Russian
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Win32.AntiAV.czej?


File Info:

crc32: 70B0DC85
md5: ace6cc0e5dd844141cc4b74f7fea4757
name: ACE6CC0E5DD844141CC4B74F7FEA4757.mlw
sha1: 888740bc8bea03435dfe473440614f9cce8b9e8c
sha256: 24cd0cd31f2090a178b746029592ddb7c7200cf16fdbb5a288f7f4e6da292825
sha512: e96cf0c0543304b6dfad20390f843e28535ee8dd0b0cf39e9790bb95b9943790baf0522b78e67694682ffeeb0b519abf7faadcfc961954d289317ff01d9182b4
ssdeep: 98304:t3KHXWdTA5CTFNq5/OPrDEQrHnDNiNCrYeFgYgGASolv7iBJzSyUVQq5L23yzcL:tK8NzSCciCv70eBH1fPQztHIjN
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

Translation: 0x0419 0x04e8

Trojan.Win32.AntiAV.czej also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.45048297
FireEyeGeneric.mg.ace6cc0e5dd84414
ALYacTrojan.GenericKD.45048297
CylanceUnsafe
SangforMalware
K7AntiVirusTrojan ( 0055a4081 )
BitDefenderTrojan.GenericKD.45048297
K7GWTrojan ( 0055a4081 )
Cybereasonmalicious.c8bea0
BitDefenderThetaGen:NN.ZexaF.34700.@pGfaql7zql
CyrenW32/Trojan.YJPG-8328
SymantecML.Attribute.HighConfidence
AvastWin32:DropperX-gen [Drp]
KasperskyTrojan.Win32.AntiAV.czej
AlibabaTrojan:Win32/AntiAV.35bf351b
AegisLabTrojan.Win32.Malicious.4!c
RisingTrojan.Ransom.GlobeImposter!1.AF70 (TFE:5:bYXJg1YG3DR)
Ad-AwareTrojan.GenericKD.45048297
EmsisoftTrojan.GenericKD.45048297 (B)
ComodoMalware@#13rl186fqlvew
F-SecureTrojan.TR/AD.GoCloudnet.hrjdp
McAfee-GW-EditionBehavesLike.Win32.Trojan.rc
SophosMal/Generic-S
IkarusTrojan.Win32.Ranumbot
AviraTR/AD.GoCloudnet.hrjdp
MAXmalware (ai score=84)
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Glupteba.NP!MTB
GridinsoftTrojan.Win32.Packed.oa
ArcabitTrojan.Bandit
ZoneAlarmTrojan.Win32.AntiAV.czej
GDataTrojan.GenericKD.45048297
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Agent.R358738
Acronissuspicious
McAfeeGenericRXAA-AA!ACE6CC0E5DD8
MalwarebytesTrojan.MalPack.GS
PandaTrj/RnkBend.A
APEXMalicious
ESET-NOD32Win32/RanumBot.J
YandexTrojan.AntiAV!2lGpL8CsbJg
SentinelOneStatic AI – Suspicious PE
FortinetW32/Kryptik.HIFA!tr
WebrootW32.Trojan.Gen
AVGWin32:DropperX-gen [Drp]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360Win32/Trojan.Anti.444

How to remove Trojan.Win32.AntiAV.czej?

Trojan.Win32.AntiAV.czej removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment