Trojan

Should I remove “Trojan.Win32.SelfDel.ikdy”?

Malware Removal

The Trojan.Win32.SelfDel.ikdy is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.SelfDel.ikdy virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.Win32.SelfDel.ikdy?


File Info:

name: 92C0114F5445BE25A2D3.mlw
path: /opt/CAPEv2/storage/binaries/d9ed641230ad90bc67b4ede0a681a9d1cfc96fa453f23cb4d8ebdc6d461d0801
crc32: 8D08DAA6
md5: 92c0114f5445be25a2d3f5f65b7cb947
sha1: fb18aeb8c218de2b43ecee8136205265005f8f60
sha256: d9ed641230ad90bc67b4ede0a681a9d1cfc96fa453f23cb4d8ebdc6d461d0801
sha512: 96cf514086aaea864348f7ccb63739a1ac8392329d785538211c1a62f8f27bc5621d8c133e976c3814c941d9dc8c2e311dcf76f2d6875197af6a1dc8eb1d0b83
ssdeep: 98304:zJpzFhLty3gotyLTYQrIeGiL8L5jQJAzSBvbmmDsbLyd2SM7mee4yeDpfGqg:1L3uL8GiL8L58hMdLyfMiee4Tp+b
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B856332CE48AD93DD5635A74E2B27CFB44F4496A25240BA3086B1FC17885336DDF362E
sha3_384: ac4666e6e24416192587b6b32be0ec9ab9ae5d5f7c56defc40f69cbcc70b2b6e7c885e108ca4a06859c7264f56c69861
ep_bytes: b8d871b6005064ff3500000000648925
timestamp: 2012-08-27 14:44:41

Version Info:

Comments: 3M2VnO
CompanyName: vzvv7e
FileDescription: VjVsAAO
FileVersion: 7,1,4,9
LegalCopyright: fDfIlC
ProductName: pDqDMh0a
ProductVersion: 7,1,4,9
Translation: 0x0804 0x04b0

Trojan.Win32.SelfDel.ikdy also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Convagent.4!c
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.GenericKD.69949661
FireEyeGeneric.mg.92c0114f5445be25
SkyhighBehavesLike.Win32.Generic.tc
McAfeeArtemis!92C0114F5445
Cylanceunsafe
ZillyaTrojan.SelfDel.Win32.69405
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (W)
AlibabaTrojan:Win32/SelfDel.b14f1dc8
BitDefenderThetaGen:NN.ZexaF.36792.@l0faubRNwpb
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
CynetMalicious (score: 100)
APEXMalicious
KasperskyTrojan.Win32.SelfDel.ikdy
BitDefenderTrojan.GenericKD.69949661
AvastWin32:TrojanX-gen [Trj]
SophosGeneric Reputation PUA (PUA)
F-SecureHeuristic.HEUR/AGEN.1355331
VIPRETrojan.GenericKD.69949661
TrendMicroTROJ_GEN.R002C0XJR23
Trapminemalicious.high.ml.score
EmsisoftTrojan.GenericKD.69949661 (B)
GDataTrojan.GenericKD.69949661
VaristW32/Trojan.IRG.gen!Eldorado
AviraHEUR/AGEN.1355331
Antiy-AVLTrojan[Dropper]/Win32.Convagent
ArcabitTrojan.Generic.D42B58DD
ZoneAlarmTrojan.Win32.SelfDel.ikdy
MicrosoftProgram:Win32/Wacapew.C!ml
GoogleDetected
AhnLab-V3Malware/Win.Malware-gen.R618495
ALYacTrojan.GenericKD.69949661
MAXmalware (ai score=84)
MalwarebytesGeneric.Malware/Suspicious
TrendMicro-HouseCallTROJ_GEN.R002C0XJR23
RisingDropper.Convagent!8.123ED (TFE:5:54DSdFZhYfM)
SentinelOneStatic AI – Suspicious PE
FortinetPossibleThreat.DU
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.8c218d
DeepInstinctMALICIOUS

How to remove Trojan.Win32.SelfDel.ikdy?

Trojan.Win32.SelfDel.ikdy removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment