Trojan

What is “Trojan.Win32.AntiAV.czjo”?

Malware Removal

The Trojan.Win32.AntiAV.czjo is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.AntiAV.czjo virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Unconventionial language used in binary resources: Ukrainian
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Win32.AntiAV.czjo?


File Info:

crc32: 8FDA5BEA
md5: ad602e10d889f38f03e54bc6f2418e50
name: AD602E10D889F38F03E54BC6F2418E50.mlw
sha1: 6ad97639a16c4336dca4112bea9ec1c370fbc1ad
sha256: 09be2a047c995783ecfa9c33e77f601e7925bc9cc65302d599000fce66951e09
sha512: 8ce635bce7a12671e9a85ee12329841aa16a4cf599636c549e0c28650f4fec353c81b74fc6546eb7604f0d42e510a98e6cb85618e9440be0f8a4384175338152
ssdeep: 98304:/jSalBlIlSWEOjxl0fk+k68+vnhEH1bUKGz/gIa9CPeu4cCHjDyW7+XXoaaaOf8:CfxW8Rs/HF+qpUint2nmaO+TA
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

InternalSurname: debaukd.ekze
Product: 1.7.5
FileVersions: 1.0.5.2
LegalCo: Copyri (C) 2019, permudationz

Trojan.Win32.AntiAV.czjo also known as:

Elasticmalicious (high confidence)
DrWebTrojan.Siggen11.56716
MicroWorld-eScanTrojan.GenericKD.45198061
FireEyeGeneric.mg.ad602e10d889f38f
McAfeeArtemis!AD602E10D889
CylanceUnsafe
SangforMalware
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderTrojan.GenericKD.45198061
K7GWTrojan ( 0055a4081 )
K7AntiVirusTrojan ( 0055a4081 )
BitDefenderThetaGen:NN.ZexaF.34700.@pGfaSmKaZec
CyrenW32/Trojan.FBXM-6408
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:PWSX-gen [Trj]
KasperskyTrojan.Win32.AntiAV.czjo
AlibabaTrojan:Win32/AntiAV.0aa6b530
AegisLabTrojan.Win32.AntiAV.4!c
Ad-AwareTrojan.GenericKD.45198061
SophosMal/Generic-S
F-SecureTrojan.TR/AD.GoCloudnet.otilr
McAfee-GW-EditionBehavesLike.Win32.Generic.rc
EmsisoftTrojan.GenericKD.45198061 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojanSpy.SpyEyes.pjl
AviraTR/AD.GoCloudnet.otilr
MicrosoftTrojan:Win32/Zenpack.MT!MTB
GridinsoftTrojan.Win32.Packed.oa
ArcabitTrojan.Generic.D2B1AAED
ZoneAlarmTrojan.Win32.AntiAV.czjo
GDataTrojan.GenericKD.45198061
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Kryptik.R361155
Acronissuspicious
VBA32Trojan.Injuke
MAXmalware (ai score=83)
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
ESET-NOD32Win32/RanumBot.J
RisingTrojan.Zenpak!8.10372 (TFE:5:zjLJa78TLXQ)
IkarusTrojan.Win32.Ranumbot
eGambitUnsafe.AI_Score_85%
FortinetW32/Kryptik.HGGP!tr
WebrootW32.Trojan.Gen
AVGWin32:PWSX-gen [Trj]
Cybereasonmalicious.9a16c4
Paloaltogeneric.ml
Qihoo-360Generic/HEUR/QVM11.1.3284.Malware.Gen

How to remove Trojan.Win32.AntiAV.czjo?

Trojan.Win32.AntiAV.czjo removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment