Trojan

Trojan.Win32.Chapak.ezdr removal guide

Malware Removal

The Trojan.Win32.Chapak.ezdr is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Chapak.ezdr virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Turkish
  • The binary likely contains encrypted or compressed data.
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

How to determine Trojan.Win32.Chapak.ezdr?


File Info:

crc32: A9C03CB4
md5: cbaa4434db1beaeaa97334c2a03e5799
name: CBAA4434DB1BEAEAA97334C2A03E5799.mlw
sha1: 12a04643d67b088daba8744e534028ef2d198311
sha256: 64dc73c66a4afd86bf5a6cbc0679c5dd3e10e2fb86b2eb2990d46a073f6943e8
sha512: 47a2d4d9566e62eab3eeef5cc05eeaf3a782871491514581153999754a94049535064fb76b37fb51f71bd0b70bfc2f60708ccb2d3d7e304ae84755341b50895f
ssdeep: 12288:jUYDLqCzNTJMXN8sdbanSxhoOjApVeJ4tOZL+sx56zPDKk/LEbAeqMhyaonQ3MM:jUvCZo8sN6Sno5Yx6zPD1DERqMzonQ3
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: calimatimodunador.exe
FileVersions: 7.0.2.54
LegalCopyrights: Vsekdar
ProductVersions: 7.0.21.45
Translation: 0x0129 0x04eb

Trojan.Win32.Chapak.ezdr also known as:

BkavW32.AIDetect.malware1
K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Stealer.29997
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.36505950
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/ArkeiStealer.71339b91
K7GWRiskware ( 0040eff71 )
CyrenW32/Trojan.RIOE-5283
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HJXY
APEXMalicious
AvastWin32:BotX-gen [Trj]
KasperskyTrojan.Win32.Chapak.ezdr
BitDefenderTrojan.GenericKD.36505950
ViRobotTrojan.Win32.Z.Agent.657920.MJ
MicroWorld-eScanTrojan.GenericKD.36505950
Ad-AwareTrojan.GenericKD.36505950
SophosMal/Generic-S
ComodoMalware@#28cy24qc7135e
BitDefenderThetaGen:NN.ZexaF.34628.Oq0@a0h6DAmG
VIPRETrojan.Win32.Generic!BT
TrendMicroTrojan.Win32.GLUPTEBA.THCADBA
McAfee-GW-EditionBehavesLike.Win32.Trojan.jc
FireEyeGeneric.mg.cbaa4434db1beaea
EmsisoftTrojan.Crypt (A)
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/ArkeiStealer.RM!MTB
ArcabitTrojan.Generic.D22D095E
AegisLabTrojan.Multi.Generic.4!c
GDataTrojan.GenericKD.36505950
AhnLab-V3Trojan/Win.Stealer.R371625
Acronissuspicious
McAfeeRDN/GenericM
MAXmalware (ai score=80)
VBA32Trojan.Glupteba
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojan.Win32.GLUPTEBA.THCADBA
RisingTrojan.Kryptik!8.8 (CLOUD)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:BotX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Heur.Generic.HwoC56cA

How to remove Trojan.Win32.Chapak.ezdr?

Trojan.Win32.Chapak.ezdr removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment