Trojan

TrojanDownloader:Win32/Troxen!rts removal tips

Malware Removal

The TrojanDownloader:Win32/Troxen!rts is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:Win32/Troxen!rts virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine TrojanDownloader:Win32/Troxen!rts?


File Info:

crc32: 09ABDCB4
md5: 2f10cc9f9159a4e52baa5a50cbe9b7d8
name: 2F10CC9F9159A4E52BAA5A50CBE9B7D8.mlw
sha1: 037e64cf54afdf120798bd5f576e1a2151da725c
sha256: dd6d674f8cc9d39f51d5ff714b06e56837847522fac58fba95bab5ece7841aa2
sha512: 27d6e4fed7b5bd557bbd2a566739970c927f7319405f70c2f78c0c73a9d07461689864e6cb5986ba30880925e2af414619e6710315dba0f5ec14b3316668e29e
ssdeep: 24576:SdVydtM+FoUA8j5YuUGn3U3h+S0Kjqu2mvKYyYA4F:vdBoU7f0Vt2mFA4F
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

TrojanDownloader:Win32/Troxen!rts also known as:

BkavW32.AIDetectVM.malware2
Elasticmalicious (high confidence)
FireEyeGeneric.mg.2f10cc9f9159a4e5
McAfeeGenericRXBL-KQ!2F10CC9F9159
CylanceUnsafe
VIPRELooksLike.Win32.InfectedFile!A (v)
SangforMalware
Cybereasonmalicious.f54afd
CyrenW32/Agent.CM.gen!Eldorado
SymantecML.Attribute.HighConfidence
TotalDefenseWin32/FlyAgent!generic
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
AlibabaVirus:Win32/Generic.36a5e771
NANO-AntivirusTrojan.Win32.Small.qlixm
AegisLabTrojan.Win32.Hupigon.llAE
AvastWin32:Trojan-gen
SophosMal/Generic-S (PUA)
ComodoTrojWare.Win32.FlyStudio.~UJ@1sa9s6
F-SecureTrojan.TR/Crypt.XPACK.Gen7
ZillyaDownloader.Small.Win32.18712
TrendMicroPossible_Virus
McAfee-GW-EditionBehavesLike.Win32.VirRansom.tc
SentinelOneStatic AI – Suspicious PE
WebrootW32.Gen.Bt
AviraTR/Crypt.XPACK.Gen7
MAXmalware (ai score=97)
Antiy-AVLTrojan[Downloader]/Win32.Small
MicrosoftTrojanDownloader:Win32/Troxen!rts
AhnLab-V3Malware/Win32.Suspicious.C2274713
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34804.frW@a8TiFNgb
VBA32TrojanDownloader.Small
MalwarebytesTrojan.Agent
ESET-NOD32a variant of Win32/Packed.FlyStudio potentially unwanted
TrendMicro-HouseCallPossible_Virus
RisingTrojan.Generic@ML.100 (RDML:0+5D2qj3I2OPciXKvppquA)
YandexTrojan.DL.Small!ziGww5E3Wo8
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Generic.AP.11792!tr
AVGWin32:Trojan-gen
PandaGeneric Suspicious
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360Win32/Trojan.Generic.HxMBg0sA

How to remove TrojanDownloader:Win32/Troxen!rts?

TrojanDownloader:Win32/Troxen!rts removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment