Trojan

Trojan.Win32.SelfDel.gkta information

Malware Removal

The Trojan.Win32.SelfDel.gkta is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.SelfDel.gkta virus can do?

  • Attempts to modify Internet Explorer’s start page
  • Unconventionial language used in binary resources: Chinese (Singapore)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Uses Windows utilities for basic functionality
  • Deletes its original binary from disk
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Uses suspicious command line tools or Windows utilities

How to determine Trojan.Win32.SelfDel.gkta?


File Info:

crc32: BE9A741A
md5: 78d2d7f8c93fb274160f63efbb79cafa
name: 78D2D7F8C93FB274160F63EFBB79CAFA.mlw
sha1: 5304037fecca7f7e1d968ae53fb26db89496f24a
sha256: 68966f3140901acf20e25ca55411c930b03b7128cd9b084b01a79a9f513bbbe3
sha512: a336a655c75282649616ff84d0d79af8507c1d972ebb14af51eb244f6adde7668389d9fe53e5459350242990d767e854ad492157cc96d9aa1e7ed84914875136
ssdeep: 12288:BozGdX0M4ornOmZIzfMwHHQmRROXK3Y/Bo0:B4GHnhIzOa3Y/G0
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: www.lbdz.cc @ 2014-2017
FileVersion: 2018.4.26.1
CompanyName: Brand General
Comments: www.lbdz.cc
Productname: windeploy
ProductVersion: 2.0
FileDescription: Windows Deployment Loader
Translation: 0x1004 0x04b0

Trojan.Win32.SelfDel.gkta also known as:

BkavW32.AIDetectVM.malwareA
CynetMalicious (score: 85)
ALYacTrojan.GenericKD.43229101
CylanceUnsafe
SangforMalware
CrowdStrikewin/malicious_confidence_80% (W)
AlibabaTrojan:Win32/SelfDel.2aeeadae
TrendMicroTROJ_GEN.R023C0PES20
CyrenW32/Trojan.CTXY-1488
APEXMalicious
AvastWin32:Malware-gen
GDataTrojan.GenericKD.43229101
KasperskyTrojan.Win32.SelfDel.gkta
BitDefenderTrojan.GenericKD.43229101
MicroWorld-eScanTrojan.GenericKD.43229101
TencentWin32.Trojan.Selfdel.Akpe
Ad-AwareTrojan.GenericKD.43229101
F-SecureDropper.DR/AutoIt.Gen8
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.gc
Trapminemalicious.high.ml.score
FireEyeTrojan.GenericKD.43229101
EmsisoftTrojan.GenericKD.43229101 (B)
Endgamemalicious (high confidence)
AviraDR/AutoIt.Gen8
MicrosoftTrojan:Win32/Wacatac.C!ml
JiangminTrojan.Inject.asio
ArcabitTrojan.Generic.D2939FAD
AegisLabTrojan.Win32.SelfDel.4!c
ZoneAlarmTrojan.Win32.SelfDel.gkta
AhnLab-V3Malware/Win32.Generic.C4124349
McAfeeRDN/Generic.dx
MAXmalware (ai score=86)
MalwarebytesTrojan.StartPage
TrendMicro-HouseCallTROJ_GEN.R023C0PES20
IkarusDropper.AutoIt
FortinetW32/SelfDel.GKTA!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.2a4

How to remove Trojan.Win32.SelfDel.gkta?

Trojan.Win32.SelfDel.gkta removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment