Trojan

About “Trojan.Win32.Destro” infection

Malware Removal

The Trojan.Win32.Destro is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Destro virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Trojan.Win32.Destro?


File Info:

name: 1DEA8345551E533A7584.mlw
path: /opt/CAPEv2/storage/binaries/2faf0c5f131ede2d731d7bef73da39bb32a7cc5da07041d8b06bae5563c898fc
crc32: 681D792A
md5: 1dea8345551e533a75848587f240a226
sha1: 5e6c329fa9efab735f3705d88486279b53bdd363
sha256: 2faf0c5f131ede2d731d7bef73da39bb32a7cc5da07041d8b06bae5563c898fc
sha512: 26288842ee0b29cfa839095def9e0e3c82e3221ea8e0503acab123f8c350652b60d2cd2fd2e26d979ddd59a79f544746d71c883780cfba5249c1928624696252
ssdeep: 768:dmE+DavOYqAkyYfaPP3lLuzZPKqi1mIakuy02O/7:lvOr7BfaPP3lLuBZi1aby0X/7
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1B2232A95BE658CE7EA52533E80E7C7766B3CF1814E234BA3B730B6344B1369230D9246
sha3_384: 37c3ade565b8a660fc8d80a840b53f47a17a62cdf3f33c5178cd1eb2094c0bc6bf83088637e0b0e539a7d3f809510908
ep_bytes: 83ec1cc7042401000000ff15fc814000
timestamp: 2022-06-29 11:46:39

Version Info:

0: [No Data]

Trojan.Win32.Destro also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Destro.4!c
FireEyeTrojan.GenericKD.50536244
McAfeeArtemis!1DEA8345551E
MalwarebytesTrojan.KillMBR
SangforTrojan.Win32.Killmbr.Vypu
BitDefenderTrojan.GenericKD.50536244
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/KillMBR.NGI
KasperskyHEUR:Trojan.Win32.Destro.gen
MicroWorld-eScanTrojan.GenericKD.50536244
RisingTrojan.KillMBR!8.F58 (CLOUD)
Ad-AwareTrojan.GenericKD.50536244
EmsisoftTrojan.GenericKD.50536244 (B)
F-SecureTrojan.TR/KillMBR.kuqrj
VIPRETrojan.GenericKD.50536244
McAfee-GW-EditionBehavesLike.Win32.Generic.pm
SophosMal/Generic-S
GDataTrojan.GenericKD.50536244
JiangminTrojanDownloader.Paph.gg
AviraTR/KillMBR.kuqrj
MAXmalware (ai score=82)
ArcabitTrojan.Generic.D3031F34
ZoneAlarmHEUR:Trojan.Win32.Destro.gen
MicrosoftTrojan:Win32/Wacatac.B!ml
AhnLab-V3Trojan/Win.Generic.R501878
ALYacTrojan.Agent.KillMBR
TencentWin32.Trojan.Destro.Edew
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/KillMBR.NGI!tr
AVGWin32:Trojan-gen
AvastWin32:Trojan-gen

How to remove Trojan.Win32.Destro?

Trojan.Win32.Destro removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment