Trojan

About “Trojan:Win32/Malex!E” infection

Malware Removal

The Trojan:Win32/Malex!E is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Malex!E virus can do?

  • A process attempted to delay the analysis task.
  • Expresses interest in specific running processes
  • A process created a hidden window
  • Drops a binary and executes it
  • Uses Windows utilities for basic functionality
  • Deletes its original binary from disk
  • Mimics the file times of a Windows system file
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

How to determine Trojan:Win32/Malex!E?


File Info:

crc32: D7256A7C
md5: bf395a47eac637f0b2b765ba91d914c7
name: b3.exe
sha1: d0559eb66f5cebb8b5ea3b2768043d1e8326d3e3
sha256: c9404c977616bb0792a8a834792067df556efea59e47a632f89170170e1db8ee
sha512: c8c47d9db499135f11c0310729fa7da5e9b48897829d172c37f6c1fb12675d61e9174e426708967f1ba1acd6f6b650393c9e4a907251be411c5d2f81e83c1b61
ssdeep: 1536:odtny10RATRw7AdFodLtYvXbT8kJ4Z/4u+RJ:9NC7AwdePN4Z/4u
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan:Win32/Malex!E also known as:

BkavW32.WansickyA.Worm
MicroWorld-eScanTrojan.GenericKD.40390791
CAT-QuickHealTrojan.Malex.20247
McAfeeArtemis!BF395A47EAC6
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Generic.4!c
TheHackerTrojan/Spy.POSCardStealer.b
K7GWSpyware ( 0047ea001 )
K7AntiVirusSpyware ( 0047ea001 )
ArcabitTrojan.Generic.D2685087
TrendMicroTROJ_FRS.VSN0BH18
BaiduWin32.Trojan.WisdomEyes.16070401.9500.9868
NANO-AntivirusTrojan.Win32.Winlock.ctdcol
F-ProtW32/POSCardStealer.A.gen!Eldorado
SymantecInfostealer.Liteol
ESET-NOD32a variant of Win32/Spy.POSCardStealer.B
TrendMicro-HouseCallTROJ_FRS.VSN0BH18
Paloaltogeneric.ml
ClamAVWin.Trojan.Liteol-1
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.GenericKD.40390791
SUPERAntiSpywareTrojan.Agent/Gen-Malex
Ad-AwareTrojan.GenericKD.40390791
EmsisoftTrojan.GenericKD.40390791 (B)
F-SecureTrojan.GenericKD.40390791
DrWebTrojan.Winlock.7508
ZillyaTrojan.POSCardStealer.Win32.6
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Generic.mm
FortinetW32/POSStealer.B!tr
SophosTroj/Trackr-Gen
IkarusTrojan-Spy.POSCard
CyrenW32/POSCardStealer.A.gen!Eldorado
JiangminTrojan/Generic.aqbsa
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1001850
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.Unknown
KingsoftWin32.Troj.Undef.(kcloud)
Endgamemalicious (high confidence)
MicrosoftTrojan:Win32/Malex.gen!E
ZoneAlarmHEUR:Trojan.Win32.Generic
AhnLab-V3Win-Trojan/Malex.81408
ALYacGen:Win32.Malware.fyW@auTA5Jji
AVwareTrojan.Win32.Generic!BT
VBA32Trojan.Malex
MalwarebytesBackdoor.Bot
PandaTrj/CI.A
RisingSpyware.POSCardStealer!8.644 (TFE:5:rvZ9opPAhxC)
YandexTrojan.Agent!YEraWH2kBrY
SentinelOnestatic engine – malicious
GDataTrojan.GenericKD.40390791
AVGWin32:Pocardler-F [Trj]
Cybereasonmalicious.7eac63
AvastWin32:Pocardler-F [Trj]
CrowdStrikemalicious_confidence_100% (D)
Qihoo-360HEUR/QVM10.1.Malware.Gen

How to remove Trojan:Win32/Malex!E?

Trojan:Win32/Malex!E removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment