Virus

Virus:Win32/Chiton.K removal instruction

Malware Removal

The Virus:Win32/Chiton.K is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Virus:Win32/Chiton.K virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Virus:Win32/Chiton.K?


File Info:

name: 0A2BE8AFE9BAC8706972.mlw
path: /opt/CAPEv2/storage/binaries/002ecf3ebe56c59ca6d6fe6bc848a59b3c8c5196edf4c27b45a2e3398a6a655a
crc32: 7657079B
md5: 0a2be8afe9bac87069722b6230453ace
sha1: 0066c46bbbc1a4f588ad1b8f2b0411446387bf05
sha256: 002ecf3ebe56c59ca6d6fe6bc848a59b3c8c5196edf4c27b45a2e3398a6a655a
sha512: c8c29bca6b9bf4a9038eb39296969166e9f8e9068aadbed4fa0b16e10e21a95dd0bf171a9fd52cf04638ff274d43cb661f4edfe06dd69a79056715faaae6fdf0
ssdeep: 96:nPGNe6ZBMi5JBw6l53WVDYPNJYQqC5qW3g+rxturJgoKPlxsHJsA5Xrf:nd6ZBMu7waGVDAYQrqyrir6fxsLL
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1D3F13B935C89093BC4F44F3C19A3E125F9E6A475117E6211BB78D78E1CB2244127C9BF
sha3_384: 4e8671f8d6df9426bfa9157d1c0003cd75a9f8b38bd6bb6cc63006fc6f51e5e733c42dcf1f3a41a557be788fda895d85
ep_bytes: ba10000000bb00304000bf3b114000e8
timestamp: 1987-10-01 14:32:18

Version Info:

0: [No Data]

Virus:Win32/Chiton.K also known as:

LionicVirus.Win32.Chiton.l093
tehtrisGeneric.Malware
DrWebTrojan.DownLoader4.9204
MicroWorld-eScanWin32.Chiton.J
ClamAVWin.Trojan.Chiton-2
FireEyeGeneric.mg.0a2be8afe9bac870
CAT-QuickHealW32.Chiton.K1
SkyhighW32/Chiton.dr
McAfeeW32/Chiton.dr
Cylanceunsafe
ZillyaVirus.Chiton.Win32.13
SangforSuspicious.Win32.Save.a
K7AntiVirusRiskware ( 0015e4f01 )
AlibabaVirus:Win32/Chiton.409cdbd6
K7GWRiskware ( 0015e4f01 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZexaF.36744.amW@aCd3uVk
SymantecW32.Chiton.gen
Elasticmalicious (high confidence)
ESET-NOD32Win32/Chiton.E.2.Gener1
APEXMalicious
CynetMalicious (score: 100)
KasperskyVirus.Win32.Chiton.r
BitDefenderWin32.Chiton.J
NANO-AntivirusVirus.Win32.Chiton.cvzclj
AvastWin32:Chiton-AI
SophosMal/Generic-R
F-SecureMalware.W32/Chiton.BD
VIPREWin32.Chiton.J
TrendMicroTROJ_CHITON.A
Trapminemalicious.high.ml.score
EmsisoftWin32.Chiton.J (B)
GDataWin32.Chiton.J
JiangminTrojan/Chiton.o
WebrootVirus:Win32/Chiton.K
GoogleDetected
AviraW32/Chiton.BD
Antiy-AVLVirus/Win32.Chiton
KingsoftWin32.Infected.AutoInfector.a
XcitiumMalware@#1gb89kisna4vm
ArcabitWin32.Chiton.J
ZoneAlarmVirus.Win32.Chiton.r
MicrosoftVirus:Win32/Chiton.K
VaristW32/Chiton.4092
MAXmalware (ai score=100)
VBA32suspected of Trojan.Handler.Heur
MalwarebytesGeneric.Malware/Suspicious
PandaW32/Chiton.R
TrendMicro-HouseCallTROJ_CHITON.A
RisingVirus.Chiton!1.657E (CLASSIC)
IkarusVirus.Win32.Chiton
MaxSecureVirus.W32.Chiton.E
FortinetW32/Chiton.A!tr.dr
AVGWin32:Chiton-AI
Cybereasonmalicious.bbbc1a
DeepInstinctMALICIOUS

How to remove Virus:Win32/Chiton.K?

Virus:Win32/Chiton.K removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment