Trojan

What is “Trojan.Win32.Broskod”?

Malware Removal

The Trojan.Win32.Broskod is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Broskod virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine Trojan.Win32.Broskod?


File Info:

name: 64741B99525922889B04.mlw
path: /opt/CAPEv2/storage/binaries/f18ae05cc9a985b05351d3b273f72122a2892b28e9d1dd7da071ecbc613be226
crc32: BA5D3911
md5: 64741b99525922889b044f863ba3b172
sha1: d7c04047058bde9964039134155fc7d965c7aa86
sha256: f18ae05cc9a985b05351d3b273f72122a2892b28e9d1dd7da071ecbc613be226
sha512: 2328a9489e3c54d2eadaf017a58bfe3848ce9dd04ece22a55c6c974a245ae2679a4e92015383b28b00b944594563b211a4d7351a8f3cb0e8606f999e30c9a51b
ssdeep: 3072:q7lWcSzoFrJltLwmZGNcx+rAdvUXu3ER4+UUMVgwUUt2M4uxewcDVE9jEXb4+gTc:kOKtUEx6ovUXu3ER4+UUMVgwUUt2M4uO
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1DDE37D167681C4DAC76340F1828B6B5F4F56BE210E6270E757C47F0AAFF50B56A3B086
sha3_384: aba8238a3dc8f004bb5dbabdcd499162c79f181f83a908f61816dcb40c871eea07db448d2beed68566a905dd8a6371e2
ep_bytes: 558bec6aff68b890400068506c400064
timestamp: 2014-09-14 07:20:22

Version Info:

0: [No Data]

Trojan.Win32.Broskod also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Doina.25190
CAT-QuickHealTrojan.Mauvaise.SL1
McAfeeGenericRXAN-DG!64741B995259
CylanceUnsafe
ZillyaBackdoor.Finfish.Win32.18
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan-Downloader ( 005412be1 )
AlibabaTrojanDownloader:Win32/DropperX.e5d6e284
K7GWTrojan-Downloader ( 005412be1 )
Cybereasonmalicious.952592
VirITTrojan.Win32.Dnldr16.ZCC
CyrenW32/Agent.DQN.gen!Eldorado
SymantecDownloader
ESET-NOD32Win32/TrojanDownloader.Agent.CWI
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan.Win32.Broskod.gen
BitDefenderGen:Variant.Doina.25190
NANO-AntivirusTrojan.Win32.Dwn.dwrwuh
AvastWin32:DropperX-gen [Drp]
TencentMalware.Win32.Gencirc.10b0f069
ComodoTrojWare.Win32.TrojanDownloader.Broskod.SA@6vorj1
DrWebTrojan.DownLoader16.16954
TrendMicroTROJ_GEN.R002C0OL521
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
EmsisoftGen:Variant.Doina.25190 (B)
SentinelOneStatic AI – Suspicious PE
GDataWin32.Trojan.PSE.10DT2NP
JiangminBackdoor/Finfish.d
eGambitUnsafe.AI_Score_96%
Antiy-AVLTrojan/Generic.ASMalwS.E5F25C
ViRobotTrojan.Win32.Z.Doina.147249
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
AhnLab-V3Trojan/Win32.Broskod.R190001
VBA32Trojan.Broskod
MAXmalware (ai score=80)
MalwarebytesTrojan.Downloader
TrendMicro-HouseCallTROJ_GEN.R002C0OL521
RisingMalware.FakeXLS/ICON!1.9C3D (CLASSIC)
YandexTrojan.Broskod!EnkeBxbqRbM
FortinetW32/Agent.CWI!tr
BitDefenderThetaGen:NN.ZexaF.34084.iqZ@aSTT2bcb
AVGWin32:DropperX-gen [Drp]
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Win32.Broskod?

Trojan.Win32.Broskod removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment