Trojan

Should I remove “Trojan.Win32.Chapak.bfet”?

Malware Removal

The Trojan.Win32.Chapak.bfet is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Chapak.bfet virus can do?

  • Executable code extraction
  • Possible date expiration check, exits too soon after checking local time
  • Creates RWX memory
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Uses Windows utilities for basic functionality
  • Checks the CPU name from registry, possibly for anti-virtualization
  • Attempts to modify proxy settings

Related domains:

z.whorecord.xyz
a.tomx.xyz
ipv4bot.whatismyipaddress.com
a.dnspod.com
gandcrab.bit

How to determine Trojan.Win32.Chapak.bfet?


File Info:

crc32: 76AC60D1
md5: cde0a77cbccccf32ad10269f6c195715
name: CDE0A77CBCCCCF32AD10269F6C195715.mlw
sha1: 834761543d81623e7d8d51f7c8df75bcfbf6ccba
sha256: b52a1f12fa17d5e33da0c014aa59e2d6c9eacc8b6202ddbd31747d035c071b31
sha512: 2e9177f3f788ac864cd21f880e1a3907f3713a3fb123ae40c125db24047f0eee61aa11b760978005c6820719dfeba5a6916bc32798975c169d6badb38182d442
ssdeep: 3072:ncVZd1ei56zu69ekneflTcrnw0UI4oqdDFh+sxVqZkCD4KJyN:ncbd1eiUDxefarwE41dZkq9ZN
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Trojan.Win32.Chapak.bfet also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005257f41 )
LionicTrojan.Win32.Chapak.4!c
DrWebTrojan.Encoder.24384
CAT-QuickHealTrojan.Chapak.ZZ6
ALYacGen:Heur.BrResMon.1
CylanceUnsafe
ZillyaTrojan.Chapak.Win32.64749
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Chapak.981a7946
K7GWTrojan ( 005257f41 )
Cybereasonmalicious.cbcccc
SymantecTrojan.Gen.2
ESET-NOD32Win32/Filecoder.GandCrab.A
APEXMalicious
AvastFileRepMalware
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Chapak.bfet
BitDefenderGen:Heur.BrResMon.1
NANO-AntivirusTrojan.Win32.Jorik.exhyfv
MicroWorld-eScanGen:Heur.BrResMon.1
TencentWin32.Ransomware.Gandcrab.Auto
Ad-AwareGen:Heur.BrResMon.1
ComodoTrojWare.Win32.Ransom.GandCrab.A@7jk3ar
BitDefenderThetaGen:NN.ZexaF.34790.hmGfaS8azck
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionPacked-YS!1F3FC7C78C9D
FireEyeGeneric.mg.cde0a77cbccccf32
EmsisoftGen:Heur.BrResMon.1 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Yakes.ytu
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Glupteba!ml
ArcabitTrojan.BrResMon.1
SUPERAntiSpywareTrojan.Agent/Gen-Malagent
GDataGen:Heur.BrResMon.1
TACHYONRansom/W32.GandCrab.221184
Acronissuspicious
McAfeeArtemis!CDE0A77CBCCC
MAXmalware (ai score=88)
VBA32Trojan.Encoder
MalwarebytesRansom.GandCrab
PandaTrj/CI.A
YandexTrojan.GenAsa!U+HhvNScvu4
IkarusVirus.Win32.Obfuscator
MaxSecureTrojan.Malware.12118273.susgen
FortinetW32/GenKryptik.CPYR!tr
AVGFileRepMalware
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Chapak.HwsBajAA

How to remove Trojan.Win32.Chapak.bfet?

Trojan.Win32.Chapak.bfet removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment