Trojan

About “Trojan:Win32/Ausiv” infection

Malware Removal

The Trojan:Win32/Ausiv is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Ausiv virus can do?

  • At least one process apparently crashed during execution
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan:Win32/Ausiv?


File Info:

name: F231D5961C7A8B114B1C.mlw
path: /opt/CAPEv2/storage/binaries/e3dbd8a13d4a75803df706b483e5069b0d7c13ba7910f59d565c2f582d6cd657
crc32: E29FDC99
md5: f231d5961c7a8b114b1ce8bcbd1a7ce0
sha1: 808ae96437bd3fbbed3d301464a70aa6adc2a4e6
sha256: e3dbd8a13d4a75803df706b483e5069b0d7c13ba7910f59d565c2f582d6cd657
sha512: 3979e5170d653ae14cdaa2a7763cb3cf9c48a39b59ea44aeaafe424b55acf883cd24642853395283cc4e0a27881eedcaeae64c84430640c9a7b3632e7f042448
ssdeep: 384:ycauqb99rkyIDaFErNSrzNvOcVGTYp5O1aTb:/srAkERoZYT8OM
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12CD25B537D449FB3E59B0C3E0D2AA76795B4A12203200AD3F3544C9BEF72AD60A396D6
sha3_384: 63ce7211e8e1662d09d2846c124ffd5374c46cdca491e4d439d98e9ac4d5295c783b259e719db6b180c6b8ecdadb8771
ep_bytes: e80060000073ebebebeb73237dabebf3
timestamp: 2010-08-01 10:32:37

Version Info:

0: [No Data]

Trojan:Win32/Ausiv also known as:

BkavW32.OverlayND.PE
LionicHacktool.Win32.Krap.x!c
Elasticmalicious (high confidence)
DrWebTrojan.KillFiles.62112
MicroWorld-eScanTrojan.Agent.EXMP
FireEyeGeneric.mg.f231d5961c7a8b11
CAT-QuickHealWin32.Sivis.A4
ALYacTrojan.Agent.EXMP
MalwarebytesMalware.AI.1444211799
VIPRETrojan.Win32.Generic!BT
K7AntiVirusTrojan ( 00517a0d1 )
AlibabaVirus:Win32/Ausiv.cfc3b24e
K7GWTrojan ( 00517a0d1 )
Cybereasonmalicious.61c7a8
BitDefenderThetaAI:Packer.367EA7361F
CyrenW32/Ausiv.E.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Ausiv.A
TrendMicro-HouseCallTROJ_GEN.R002C0DGQ21
Paloaltogeneric.ml
ClamAVWin.Trojan.Agent-6943819-1
KasperskyPacked.Win32.Krap.jc
BitDefenderTrojan.Agent.EXMP
NANO-AntivirusTrojan.Win32.Krap.espnuv
AvastWin32:Agent-BCFZ [Trj]
TencentTrojan.Win32.Kryptik.fwwy
Ad-AwareTrojan.Agent.EXMP
EmsisoftTrojan.Agent.EXMP (B)
ComodoVirus.Win32.VirLock.GA@7lv9go
ZillyaTrojan.Black.Win32.51917
TrendMicroTROJ_GEN.R002C0DGQ21
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.mz
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
JiangminPacked.Krap.fyig
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=85)
Antiy-AVLTrojan/Generic.ASMalwS.24904BF
MicrosoftTrojan:Win32/Ausiv
ViRobotTrojan.Win32.Agent.Gen.C
GDataWin32.Virus.Ausiv.B
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Agent.R236179
Acronissuspicious
McAfeePacked-SU!F231D5961C7A
VBA32Malware-Cryptor.General.3
APEXMalicious
RisingVirus.Sivis!1.A647 (CLASSIC)
YandexTrojan.GenAsa!8BX67dEhxck
IkarusPacker.Win32.Krap
eGambitUnsafe.AI_Score_98%
FortinetW32/Ausiv.A
AVGWin32:Agent-BCFZ [Trj]
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_100% (W)
MaxSecurePacked.Krap.JC

How to remove Trojan:Win32/Ausiv?

Trojan:Win32/Ausiv removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment