Trojan

Trojan.Win32.Badex.y removal tips

Malware Removal

The Trojan.Win32.Badex.y is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Badex.y virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine Trojan.Win32.Badex.y?


File Info:

name: 2F850F2450E5408A6146.mlw
path: /opt/CAPEv2/storage/binaries/3ad6c36d0fd12cebce9a2245af2cc11b39039885201601a5c0088655c82c464c
crc32: AD2AAAF3
md5: 2f850f2450e5408a614633494b672aa0
sha1: 9057a6540b2161dec4e56b3897ec3f90c0e33109
sha256: 3ad6c36d0fd12cebce9a2245af2cc11b39039885201601a5c0088655c82c464c
sha512: d48b756249c40e517fed652b67d5dd9ffd6c4ab42e39b173a450ec1c27c38c96d963fb360501fa69913667606aa086e824bcc498e6f4f6756365fde2377ac460
ssdeep: 24576:fiT0T3un8EG7SgpHrKXIHIG5KYUh6PAO2JZ3XIJNjN:O0THZ7ZLpf7t27IJVN
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19B15F141EA481447D8450E7900A943F26F18EE06DA70DDB393F5EA7E9CA3FD296C11EB
sha3_384: 13c7c9d0bfd3c9a1ba7746b6d2120c6b2912cda39d6483a6250a493cc65731b2d8a989c7d7a04ed6e291efe329d9dc15
ep_bytes: 558bec6aff6818604100684e0a410064
timestamp: 2008-10-30 12:18:32

Version Info:

CompanyName:
FileDescription: Player Microsoft 基础类应用程序
FileVersion: 1, 0, 0, 1
InternalName: Player
LegalCopyright: 版权所有 (C) 2008
LegalTrademarks:
OriginalFilename: Player.EXE
ProductName: Player 应用程序
ProductVersion: 1, 0, 0, 1
Translation: 0x0804 0x04b0

Trojan.Win32.Badex.y also known as:

BkavW32.Common.798B4F81
LionicTrojan.Win32.Badex.4!c
McAfeeArtemis!2F850F2450E5
ZillyaTrojan.Badex.Win32.14
SangforTrojan.Win32.Badex.Venu
K7AntiVirusRiskware ( 00584baa1 )
AlibabaTrojan:Win32/Badex.3553a8fd
K7GWRiskware ( 00584baa1 )
KasperskyTrojan.Win32.Badex.y
AvastWin32:Malware-gen
DrWebTrojan.Siggen6.61582
McAfee-GW-EditionArtemis
ZoneAlarmTrojan.Win32.Badex.y
VBA32BScope.Trojan.Zpevdo
RisingTrojan.Badex!8.11E63 (CLOUD)
MaxSecureTrojan.Malware.215633881.susgen
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Trojan.Win32.Badex.y?

Trojan.Win32.Badex.y removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment