Trojan

Trojan.Win32.Chapak.pef removal

Malware Removal

The Trojan.Win32.Chapak.pef file is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

What Trojan.Win32.Chapak.pef virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Installs itself for autorun at Windows startup
  • Writes a potential ransom message to disk
  • Creates a copy of itself
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

How to determine Trojan.Win32.Chapak.pef?


General:

Operating System: Windows 7 / 8 / 8.1 / 10 Virus Name: HEUR:Trojan.Win32.Chapak.pef

File Info:

Name: starticon5.exe

Size: 735744

Type: PE32 executable (GUI) Intel 80386, for MS Windows

MD5: dc2a5b9b07eb864629b82e912ac6737d

SHA1: 9227291ec8c99d8ef524359dfd1da2c026945b61

SH256: f39c954c592021cf567b3bec1793399e80df0cfbf89816772f851c761c2387fb

Version Info:

[No Data]

Trojan.Win32.Chapak.pef also known as:

ALYacTrojan.Ransom.Stop
AVGWin32:CrypterX-gen [Trj]
Acronissuspicious
Ad-AwareTrojan.GenericKD.32652689
AegisLabTrojan.Win32.Zbot.m6l9
AhnLab-V3Trojan/Win32.RL_MalPe.R296523
AlibabaTrojan:Win32/Injector.8763b290
Antiy-AVLTrojan/Win32.GandCrab
ArcabitTrojan.Generic.D1F23D91
AvastWin32:CrypterX-gen [Trj]
AviraTR/AD.InstaBot.bxbli
BitDefenderTrojan.GenericKD.32652689
BitDefenderThetaGen:NN.ZexaF.32248.SG0@a8XRp5o
CAT-QuickHealRansom.STOP.S8831455
ClamAVWin.Malware.Generic-7366725-0
CrowdStrikewin/malicious_confidence_100% (W)
Cybereasonmalicious.ec8c99
CylanceUnsafe
CyrenW32/Trojan.UDHO-2675
DrWebTrojan.DownLoader30.31303
ESET-NOD32a variant of Win32/Injector.EION
EmsisoftTrojan.GenericKD.32652689 (B)
Endgamemalicious (high confidence)
F-ProtW32/Kryptik.API.gen!Eldorado
F-SecureTrojan.TR/AD.InstaBot.bxbli
FireEyeGeneric.mg.dc2a5b9b07eb8646
FortinetW32/Injector.EION!tr
GDataTrojan.GenericKD.32652689
IkarusTrojan.Inject
Invinceaheuristic
K7AntiVirusTrojan ( 0055a7311 )
K7GWTrojan ( 0055a7311 )
KasperskyHEUR:Trojan.Win32.Chapak.pef
MAXmalware (ai score=81)
MalwarebytesTrojan.MalPack.GS
McAfeeRDN/Generic.grp
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
MicroWorld-eScanTrojan.GenericKD.32652689
MicrosoftTrojan:Win32/Predator.PA!MTB
NANO-AntivirusTrojan.Win32.Dwn.gffugx
Paloaltogeneric.ml
PandaTrj/GdSda.A
Qihoo-360Trojan.Generic
RisingTrojan.Generic@ML.97 (RDMK:JcMuME0NbqVQHDb6HXxr4w)
SentinelOneDFI – Malicious PE
SophosMal/GandCrab-G
SymantecPacked.Generic.525
Trapminemalicious.high.ml.score
TrendMicroTROJ_FRS.VSNW1DJ19
TrendMicro-HouseCallTROJ_FRS.VSNW1DJ19
VBA32BScope.Trojan.Wacatac
VIPRETrojan.Win32.Generic!BT
WebrootW32.Malware.Gen
YandexTrojan.Injector!rX0vKFAxuuk
ZillyaTrojan.Injector.Win32.663188
ZoneAlarmHEUR:Trojan.Win32.Chapak.pef

How to remove Trojan.Win32.Chapak.pef?

Trojan.Win32.Chapak.pef removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment