Trojan

Trojan.Win32.Startun.azk removal instruction

Malware Removal

The Trojan.Win32.Startun.azk is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Startun.azk virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

How to determine Trojan.Win32.Startun.azk?


File Info:

crc32: 4B7796E6
md5: fddaa95768f2f200af37feb5f8ff4a94
name: tgeo_multi_2_302.exe
sha1: 9e3821038db31438c3a22f2a511be702e9b4d927
sha256: 2f02986a99e6bd644cc955e07ed5298a4aa0a4aa9da869fe03e666d7a19603e6
sha512: 837b307a4ad1cc988d9eccad8db744d8dc9194f02457ab6bcd65c9fefc702c40546ba7df029e766eab0efab068ad7ef6fe9101d42e7f4895c88476a44cb95d8d
ssdeep: 3072:pf0O8Z/ew4GoutUQIP1g6iyCGGkHqufoo5p1ik/93ihWF:ktF4GoStIP+6iyCRyqIzx/9Y+
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright:
InternalName: setup
FileVersion: 1.0.0.0000
CompanyName: Tesy Software s.r.l
PrivateBuild: April 2, 2014
ProductName:
ProductVersion: 1.0.0.0000
FileDescription: Setup
OriginalFilename:
Translation: 0x0000 0x04b0

Trojan.Win32.Startun.azk also known as:

MicroWorld-eScanTrojan.GenericKD.33467610
FireEyeTrojan.GenericKD.33467610
McAfeeRDN/Generic.grp
ZillyaTrojan.Startun.Win32.23
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.33467610
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_60% (W)
APEXMalicious
AvastWin32:Trojan-gen
GDataTrojan.GenericKD.33467610
KasperskyTrojan.Win32.Startun.azk
AlibabaTrojan:Win32/Startun.35141ab2
AegisLabTrojan.Win32.Startun.4!c
TencentWin32.Trojan.Startun.Eibq
EmsisoftTrojan.GenericKD.33467610 (B)
F-SecureTrojan.TR/RedCap.jiaid
McAfee-GW-EditionRDN/Generic.grp
SophosGeneric PUA JO (PUA)
JiangminTrojan.Startun.c
AviraTR/RedCap.jiaid
MicrosoftTrojan:Win32/Wacatac.C!ml
ArcabitTrojan.Generic.D1FEACDA
SUPERAntiSpywareTrojan.Agent/Gen-Startun
ZoneAlarmTrojan.Win32.Startun.azk
ALYacTrojan.GenericKD.33467610
MAXmalware (ai score=94)
Ad-AwareTrojan.GenericKD.33467610
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002H06BT20
FortinetW32/Startun.AZK!tr
AVGWin32:Trojan-gen
Cybereasonmalicious.38db31
Paloaltogeneric.ml
Qihoo-360Generic/Trojan.e7d

How to remove Trojan.Win32.Startun.azk?

Trojan.Win32.Startun.azk removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment