Trojan

Trojan.Win32.Chapak.enst removal

Malware Removal

The Trojan.Win32.Chapak.enst is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Chapak.enst virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • A process created a hidden window
  • Unconventionial language used in binary resources: Finnish
  • The binary likely contains encrypted or compressed data.
  • Executed a process and injected code into it, probably while unpacking
  • Detects Sandboxie through the presence of a library
  • Detects Avast Antivirus through the presence of a library
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Win32.Chapak.enst?


File Info:

crc32: BA1FB96D
md5: e116b79051afda3b8b39ea718eacf2d2
name: atx777.exe
sha1: 2a3f861726445ee20790d65b4e71c4c99a625ae1
sha256: 95a4cf409c7e7813bfa744598bee2e0e572b2d05ec31622867237ea6dab8a813
sha512: 7bd6b0fb78cadd4fda43a4b1ae74a3381e8c4c6f99c4798dcfabe417fabe6464da5bf3ee773fc4a2a2a95b38cdcb249fdb6f959ef352a9bd83ba818e4a84e8bd
ssdeep: 3072:3LtB3ETlHLkUwhIn1vRl8SCp36+ASSVGngJYSLY1Rtch2OPEZY3XV4G/XK/ksX7:3Ad32In1vR+JASGJHMN2RP20XyGC/
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: amizepug.im
FileVersion: 1.0.0.1
Copyright: Copyright (C) 2020, kazosh
ProductVersion: 1.7.45
Translations: 0x0441 0x0315

Trojan.Win32.Chapak.enst also known as:

BkavHW32.Packed.
MicroWorld-eScanTrojan.GenericKD.34071899
FireEyeGeneric.mg.e116b79051afda3b
McAfeeRDN/Generic.hbg
AegisLabTrojan.Win32.Malicious.4!c
SangforMalware
BitDefenderTrojan.GenericKD.34071899
K7GWTrojan ( 0056988f1 )
Cybereasonmalicious.726445
TrendMicroTROJ_FRS.VSNTFP20
BitDefenderThetaGen:NN.ZexaF.34130.mq0@aerGK9iG
SymantecML.Attribute.HighConfidence
APEXMalicious
GDataTrojan.GenericKD.34071899
KasperskyTrojan.Win32.Chapak.enst
RisingRansom.SodinokibiCrypt!8.11D36 (CLOUD)
Ad-AwareTrojan.GenericKD.34071899
SophosMal/Generic-S
F-SecureTrojan.TR/AD.SmokeLoader.yecpi
Invinceaheuristic
EmsisoftTrojan.Agent (A)
IkarusTrojan.Win32.Crypt
WebrootW32.Trojan.Gen
AviraTR/AD.SmokeLoader.yecpi
MAXmalware (ai score=89)
Antiy-AVLTrojan/Win32.Wacatac
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D207E55B
ZoneAlarmTrojan.Win32.Chapak.enst
MicrosoftRansom:Win32/SodinokibiCrypt.SK!MTB
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Generic.C4142234
ALYacTrojan.GenericKD.34071899
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Kryptik.HEKP
TrendMicro-HouseCallTROJ_FRS.VSNTFP20
SentinelOneDFI – Suspicious PE
eGambitUnsafe.AI_Score_67%
FortinetMalicious_Behavior.SB
AVGFileRepMalware
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_80% (W)
Qihoo-360HEUR/QVM10.1.2A5F.Malware.Gen

How to remove Trojan.Win32.Chapak.enst?

Trojan.Win32.Chapak.enst removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment