Trojan

UDS:Trojan.Win32.Khalesi removal guide

Malware Removal

The UDS:Trojan.Win32.Khalesi is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What UDS:Trojan.Win32.Khalesi virus can do?

  • Unconventionial language used in binary resources: Russian
  • Detects VirtualBox through the presence of a registry key
  • Detects VMware through the presence of a registry key

Related domains:

electycum.info

How to determine UDS:Trojan.Win32.Khalesi?


File Info:

crc32: 9936787F
md5: f8cc13cfaf66eac161ef8e42551eca2c
name: F8CC13CFAF66EAC161EF8E42551ECA2C.mlw
sha1: 193cdaf325fe33eec353d4d8246484ca9f6927c9
sha256: 98d1cb97b2fd5c50dd5fd88d85d3bc8bce72da6ab1c2d0451dd10f607ed434ef
sha512: 340682bf725ac3032ca71646c8606f66dae1c32e4c2a20bcd65909f25841942f1c9466438491631f513f5ca37bb131070c7d9d7b97d3604e2d13331aa311355e
ssdeep: 12288:o268XNiF9/2cQz25C4dRsu/il3BkCGVQzUYX8VFDORG1an3xV7iu:HTEMcQC/dOlCCGywYIcRGE3xV7i
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: Copyleft 1998-2016 by Don HO
InternalName: npp.exe
FileVersion: 7.71
CompanyName: Don HO don.h@free.fr
ProductName: Notepad++
ProductVersion: 7.71
FileDescription: Notepad++ : a free (GNU) source code editor
OriginalFilename: Notepad++.exe

UDS:Trojan.Win32.Khalesi also known as:

Elasticmalicious (high confidence)
CylanceUnsafe
SangforTrojan.Win32.Save.a
AlibabaTrojanDownloader:Win32/Satacom.772876ba
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/TrojanDownloader.Satacom.X
APEXMalicious
AvastWin32:DropperX-gen [Drp]
ClamAVWin.Malware.Lethic-6995163-0
KasperskyUDS:Trojan.Win32.Khalesi.gen
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34722.6u0@a0WwR4ak
McAfee-GW-EditionBehavesLike.Win32.Dropper.dm
FireEyeGeneric.mg.f8cc13cfaf66eac1
MicrosoftTrojan:Win32/Satacom!MSR
McAfeeArtemis!F8CC13CFAF66
VBA32BScope.Trojan.Agentb
MalwarebytesTrojan.Downloader
RisingTrojan.AntiVM!1.67DF (CLASSIC)
IkarusTrojan.Win32.Tinukebot
FortinetW32/Satacom.X!tr
AVGWin32:DropperX-gen [Drp]
Paloaltogeneric.ml

How to remove UDS:Trojan.Win32.Khalesi?

UDS:Trojan.Win32.Khalesi removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment