Trojan

What is “Trojan.Win32.Chapak.aydn”?

Malware Removal

The Trojan.Win32.Chapak.aydn is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Chapak.aydn virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Attempts to modify proxy settings
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
buburka.fun

How to determine Trojan.Win32.Chapak.aydn?


File Info:

crc32: AC184754
md5: c5a436ce3237dc8ed5ae9eccbbe8d054
name: C5A436CE3237DC8ED5AE9ECCBBE8D054.mlw
sha1: 9bd3253951f142b6ed9c7afaa90eb1663c677e88
sha256: bbe127b7c821fda809db2f8eaea3e1849104985be4bb380f8dd0e66b6df57141
sha512: 215474413f60a5965b47936db5853c71f495ecf301a8aacbd4398d25eb137db6c8c7bb964cfccf89cb9f33cfdbe05dd5753a736875592729a574a59cfb350dfa
ssdeep: 3072:B/47rQ03gRiMntDxumxgq0s4x57PAjd0XdpkPd6TqSYPy+v5aPRd/zh:B/47rQ0l0CFsMlIh8pSoxwCZ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: ostksdtgsdfg.exe
FileVersion: 1.0.0.1
ProductVersion: 1.0.0.1
Translation: 0x0809 0x04b0

Trojan.Win32.Chapak.aydn also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00516fdf1 )
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Stealer.24814
CynetMalicious (score: 100)
ALYacTrojan.Brsecmon.1
CylanceUnsafe
ZillyaTrojan.Chapak.Win32.21754
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Chapak.3bc8e19c
K7GWTrojan ( 00516fdf1 )
Cybereasonmalicious.e3237d
CyrenW32/Kryptik.JY.gen!Eldorado
SymantecPacked.Generic.525
ESET-NOD32a variant of Win32/Kryptik.GLML
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
KasperskyTrojan.Win32.Chapak.aydn
BitDefenderTrojan.Brsecmon.1
NANO-AntivirusTrojan.Win32.Stealer.fjcbbn
MicroWorld-eScanTrojan.Brsecmon.1
TencentWin32.Trojan.Chapak.Szbg
Ad-AwareTrojan.Brsecmon.1
SophosMal/Generic-R + Mal/GandCrab-G
ComodoTrojWare.Win32.Ransom.Gandcrab.AQA@7x2qbr
BitDefenderThetaGen:NN.ZexaF.34796.nu0@aabD0zli
VIPRETrojan.Win32.Generic!BT
TrendMicroTrojan.Win32.SODINOK.SM.hp
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
FireEyeGeneric.mg.c5a436ce3237dc8e
EmsisoftTrojan.Brsecmon.1 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Obfuscated.byxs
AviraHEUR/AGEN.1102756
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.28885C8
MicrosoftRansom:Win32/Gandcrab.G!MTB
ArcabitTrojan.Brsecmon.1
ZoneAlarmTrojan.Win32.Chapak.aydn
GDataTrojan.Brsecmon.1
AhnLab-V3Malware/Win32.Generic.R241391
Acronissuspicious
McAfeeTrojan-FQDF!C5A436CE3237
MAXmalware (ai score=100)
VBA32BScope.TrojanDownloader.Vigorf
MalwarebytesTrojan.Downloader
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojan.Win32.SODINOK.SM.hp
RisingTrojan.Generic@ML.100 (RDML:F+Bo0r6gKOOoDPtIgJ3SOw)
YandexTrojan.GenAsa!4N/vowAFyD4
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.CNLN!tr
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.GandCrab.HwoCEpsA

How to remove Trojan.Win32.Chapak.aydn?

Trojan.Win32.Chapak.aydn removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment