Trojan

Trojan.Win32.Witch.ivj removal tips

Malware Removal

The Trojan.Win32.Witch.ivj is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Witch.ivj virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan.Win32.Witch.ivj?


File Info:

name: CFE6D4C019A7C3E6C2DF.mlw
path: /opt/CAPEv2/storage/binaries/73c72564976049fc3c6890cd829768bf6a1264d9c07647b714685798a2ad0e91
crc32: 1A993B28
md5: cfe6d4c019a7c3e6c2df7167d0c2edf5
sha1: 3bbdeee3435f05748d6a65ddc03b7aa663eb56d8
sha256: 73c72564976049fc3c6890cd829768bf6a1264d9c07647b714685798a2ad0e91
sha512: d51fd78f6f191a685b27c8ca279b840bd57c5783b32f7e49853b3abd7fb11d37630ddc77a1626228da4d6462b1f4e2e67cae7614b4368cf2ff2d541d29182225
ssdeep: 768:J1113VUwg1111111111gn1w0lnLaPglbAoj3yfeyZyuBlh/yhtWPSZHHprarzE9F:TWwbOOnLhU0CfeUJStYYHHproA9P
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19643C01AD5E50895E9C72F3C440AAF9DBE1E6CF11C7B623A226430A4F82D917FDD0963
sha3_384: 3a960c9a05d9edfb97321aece4f087aa8a266a73026466a518387b9e87952abb793ba10c4c9d9122d4bbc710760395ea
ep_bytes: 64a13000000083c000fc80e7fffc5299
timestamp: 2011-01-29 20:49:26

Version Info:

0: [No Data]

Trojan.Win32.Witch.ivj also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Midie.47122
FireEyeGeneric.mg.cfe6d4c019a7c3e6
CAT-QuickHealTrojan.IgenericRI.S26222255
ALYacGen:Variant.Midie.47122
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0058dc961 )
BitDefenderGen:Variant.Midie.47122
K7GWTrojan ( 0058dc961 )
Cybereasonmalicious.019a7c
BitDefenderThetaAI:Packer.E4B258BE1E
CyrenW32/Cosmu.K.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Agent.OKR
APEXMalicious
ClamAVWin.Malware.Midie-9936226-0
KasperskyTrojan.Win32.Witch.ivj
NANO-AntivirusVirus.Win32.Gen.ccmw
RisingMalware.Heuristic!ET#90% (RDMK:cmRtazoP7GWS/kTgKHBn7UPPqWJA)
SophosMal/Generic-R + Mal/Inject-CG
DrWebTrojan.Siggen16.39130
TrendMicroTROJ_KRYPTK.SM10
McAfee-GW-EditionBehavesLike.Win32.Generic.qh
EmsisoftGen:Variant.Midie.47122 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Crypt.ZPACK.Gen
MAXmalware (ai score=87)
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ZoneAlarmTrojan.Win32.Witch.ivj
GDataGen:Variant.Midie.47122
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Gampass.R467614
McAfeeGenericRXAA-AA!CFE6D4C019A7
VBA32Malware-Cryptor.Win32.General.4
MalwarebytesMalware.AI.3766743511
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_KRYPTK.SM10
YandexTrojan.GenAsa!g4uRYh33TJE
IkarusTrojan.Win32.Cosmu
FortinetW32/Cosmu.AO!tr
AVGWin32:Agent-AMRX [Trj]
AvastWin32:Agent-AMRX [Trj]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Trojan.Win32.Witch.ivj?

Trojan.Win32.Witch.ivj removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment