Trojan

How to remove “Trojan:Win32/Azorult.RMA!MTB”?

Malware Removal

The Trojan:Win32/Azorult.RMA!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Azorult.RMA!MTB virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.

Related domains:

mas.to

How to determine Trojan:Win32/Azorult.RMA!MTB?


File Info:

crc32: 7B4698DF
md5: 32c8eb8d27f4998b74b9dd16d925eac1
name: 32C8EB8D27F4998B74B9DD16D925EAC1.mlw
sha1: dd16ef220f4ca1f0c9f52de60a0c047d6d017e0e
sha256: 21c6e4a8fffab45df1e5f7e6b01a5ef7fc116dd8979e4e84c789d3c77ecad1ed
sha512: 976d43809f8468d420d2b3c8edf6fb26c997f0f32f3bd93c853709a70e4dc8f8429ae50e70f5d083b0e393a1c63709239b3a7adf66d3ee5578f861c0f21960d6
ssdeep: 12288:DsX0FSIboWXkU9nWbiIc9qChvywvlYkT8DWM+a3U7F3mL6+zxF6L:DssHb70sWbw6QM8ZmJL6L
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: sajbmianozu.iya
ProductVersion: 2.4.59.42
Copyright: Copyrighz (C) 2021, fudkagat
Translation: 0x0127 0x007a

Trojan:Win32/Azorult.RMA!MTB also known as:

LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Stealer.31055
ALYacGen:Variant.Fragtor.28226
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Azorult.33436fe5
K7GWRiskware ( 00584baa1 )
K7AntiVirusRiskware ( 00584baa1 )
CyrenW32/Kryptik.EWJ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HMSO
APEXMalicious
AvastWin32:PWSX-gen [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Chapak.gen
BitDefenderTrojan.Generic.30323738
ViRobotTrojan.Win32.Z.Ursnif.761856.B
MicroWorld-eScanTrojan.Generic.30323738
Ad-AwareTrojan.Generic.30323738
SophosMal/Generic-R + Troj/Krypt-CY
BitDefenderThetaGen:NN.ZexaF.34170.Uq0@aqG3phjm
McAfee-GW-EditionBehavesLike.Win32.Lockbit.bc
FireEyeGeneric.mg.32c8eb8d27f4998b
EmsisoftTrojan.Crypt (A)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.FL
eGambitUnsafe.AI_Score_99%
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Azorult.RMA!MTB
GDataTrojan.Generic.30323738
AhnLab-V3Ransomware/Win.StopCrypt.R443932
Acronissuspicious
McAfeeGenericRXQG-VB!32C8EB8D27F4
MAXmalware (ai score=88)
VBA32Backdoor.Mokes
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002H07J321
RisingTrojan.Generic@ML.90 (RDMK:bcPwn5kDrwHTTttecv63rg)
IkarusTrojan-Banker.UrSnif
FortinetW32/GenKryptik.CY!tr
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml

How to remove Trojan:Win32/Azorult.RMA!MTB?

Trojan:Win32/Azorult.RMA!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment