Trojan

Trojan.Win32.Chrop.ahb (file analysis)

Malware Removal

The Trojan.Win32.Chrop.ahb is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Chrop.ahb virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Likely virus infection of existing system binary

Related domains:

interestourflash.info

How to determine Trojan.Win32.Chrop.ahb?


File Info:

crc32: 2C1DF5FC
md5: 587ace7053cc1dbf4b55ef1f71bf2fb3
name: 587ACE7053CC1DBF4B55EF1F71BF2FB3.mlw
sha1: a0d60f0ba511d12d548ecc2406f0be5ec38964ce
sha256: 66b1a035b32618c98d55be3648596b80dddd449f6d85375327a43e6025c0de06
sha512: 6f634b9a0927bb6a56476f941c46cd0138e385d1cb8fe5e60c2d12b65802a756abacd3a2ad5a95d421aca55e6b365369ae10b478b5edc19a750698ac9d600e3c
ssdeep: 98304:d1QT4QzW3QVbcCVl4TjsIl65Lngs+ncP25:rH3QVYCVWTjL4B+cK
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
FileVersion:
CompanyName:
Comments: This installation was built with Inno Setup.
ProductName: rcjBackup
ProductVersion: 1.3.2.5
FileDescription: rcjBackup Setup
OriginalFileName:
Translation: 0x0000 0x04b0

Trojan.Win32.Chrop.ahb also known as:

K7AntiVirusRiskware ( 00584baa1 )
LionicTrojan.Win32.Chrop.4!c
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.37944951
CylanceUnsafe
SangforTrojan.Win32.Chrop.ahb
AlibabaTrojan:Win32/Chrop.76cdb01a
K7GWRiskware ( 00584baa1 )
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan.Win32.Chrop.ahb
BitDefenderTrojan.GenericKD.37944951
MicroWorld-eScanTrojan.GenericKD.37944951
TencentWin32.Trojan.Chrop.Swle
Ad-AwareTrojan.GenericKD.37944951
SophosGeneric PUA KA (PUA)
TrendMicroTROJ_GEN.R002C0WK521
McAfee-GW-EditionBehavesLike.Win32.Dropper.wc
FireEyeTrojan.GenericKD.37944951
EmsisoftTrojan.GenericKD.37944951 (B)
AviraHEUR/AGEN.1145731
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataTrojan.GenericKD.37944951
AhnLab-V3Malware/Win.Generic.C4710043
McAfeeArtemis!587ACE7053CC
MAXmalware (ai score=88)
VBA32Trojan.Chrop
MalwarebytesAdware.DownloadAssistant
TrendMicro-HouseCallTROJ_GEN.R002C0WK521
IkarusTrojan-Dropper.Win32.Agent
FortinetPossibleThreat.MU
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.Win32.Chrop.ahb?

Trojan.Win32.Chrop.ahb removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment