Crack

Win32/Patched.IX information

Malware Removal

The Win32/Patched.IX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Patched.IX virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Expresses interest in specific running processes
  • Checks for the presence of known windows from debuggers and forensic tools

How to determine Win32/Patched.IX?


File Info:

crc32: 32DAC434
md5: 3dca6e6d71505488d294311f807b62fc
name: 3DCA6E6D71505488D294311F807B62FC.mlw
sha1: 582b1889f55f0c2d6b745716139050478922cce8
sha256: 98c20f75cd64eb5a80003a62f7a08be915ce7445b51ed741ee3c80f99d365f2a
sha512: 12c0f38957dfe2cd045565bd9b6f4101b5cb1b9d01d39c6e3e643e16d5c3f82bdd78311a98f59f0d3f3417a8f1ff24bf7db207774d5ca4507e10b2283549496b
ssdeep: 6144:a1o12lUr7EbaK1fw9mdo7DZJ/wDAUZlYm3UhM9l:aC1ZobTw9tDZJwDrPYmO
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 1998-2011 Mark Russinovich and Bryce Cogswell
InternalName: TCPView
FileVersion: 3.05
CompanyName: Sysinternals - www.sysinternals.com
ProductName: Sysinternals TCPView
ProductVersion: 3.05
FileDescription: TCP/UDP endpoint viewer
Translation: 0x0409 0x04e4

Win32/Patched.IX also known as:

K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Patched.SAP.Gen
ALYacTrojan.Patched.SAP.Gen
CylanceUnsafe
ZillyaTrojan.GenericKD.Win32.109555
SangforTrojan.Win32.Swrort.A
CrowdStrikewin/malicious_confidence_60% (D)
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.d71505
CyrenW32/Swrort.J.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Patched.IX
APEXMalicious
AvastFileRepMalware
CynetMalicious (score: 99)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Patched.SAP.Gen
NANO-AntivirusTrojan.Win32.Swrort.ezhsen
TencentWin32.Trojan.Generic.Loik
Ad-AwareTrojan.Patched.SAP.Gen
SophosMal/Generic-S + ATK/Shellter-D
F-SecureHeuristic.HEUR/AGEN.1128828
BitDefenderThetaGen:NN.ZexaF.34686.sq0@aWmZNPdi
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionRansomware-FKM!3DCA6E6D7150
FireEyeTrojan.Patched.SAP.Gen
EmsisoftTrojan.Patched.SAP.Gen (B)
AviraHEUR/AGEN.1128828
MicrosoftTrojan:Win32/Swrort.A
ArcabitTrojan.Patched.SAP.Gen
AegisLabTrojan.Win32.Generic.4!c
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.Patched.SAP.Gen
AhnLab-V3ASD.Reputation.C833015
McAfeeRansomware-FKM!3DCA6E6D7150
MAXmalware (ai score=95)
MalwarebytesGeneric.Malware/Suspicious
RisingTrojan.Generic!8.C3 (CLOUD)
YandexTrojan.Agent!J6iD32KWKvw
IkarusTrojan.Win32.Swrort
FortinetW32/Generic.FKM!tr
AVGFileRepMalware

How to remove Win32/Patched.IX?

Win32/Patched.IX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment