Malware

Win32/Rozena_AGen.EU removal instruction

Malware Removal

The Win32/Rozena_AGen.EU is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Rozena_AGen.EU virus can do?

  • Authenticode signature is invalid

How to determine Win32/Rozena_AGen.EU?


File Info:

name: 6F31637D4AA8DCB127E6.mlw
path: /opt/CAPEv2/storage/binaries/d770d8f0a5256013cf2e50d4084cf739739a0000bc5353b0b024c805d9be9e29
crc32: 73856829
md5: 6f31637d4aa8dcb127e6f303c3b6254c
sha1: 9094157239c96370ebdf6c601e60110512c8fe0c
sha256: d770d8f0a5256013cf2e50d4084cf739739a0000bc5353b0b024c805d9be9e29
sha512: e7331a7b9afb9dace939550a264421d389af1d0a98e9d50bdb66d559b8c9c6da278c2ae704fd4bb036d6c15d8c0cf46677926c9f2efcfc1bae57bc8127c83bdb
ssdeep: 6144:ud7e+u01xRcWv1gtuEnhPFdb09MdtrQCJu6Y6Fl358GduoTOFZQOTnv+JW5dbaC:l01xRcWv1gMEhPFdb0ed1QCJFY6juRo7
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T196845DE7710C7E55D029A276A9C4CEDD0BF33B32A8C6BB8446B1954A07C3F64FD26885
sha3_384: 205a0836b51a5c643ee60b744ef5d78cfc9af32ff7a66678ca62f79817ff3d9213200f1d68c21c1d4166f621954169c5
ep_bytes: c70528b2450001000000e9b1fcffff90
timestamp: 2024-03-26 15:35:24

Version Info:

0: [No Data]

Win32/Rozena_AGen.EU also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.Heur.GZ.wKW@bS545fk
FireEyeGeneric.mg.6f31637d4aa8dcb1
SkyhighBehavesLike.Win32.CobaltStrike.ft
ALYacGen:Trojan.Heur.GZ.wKW@bS545fk
Cylanceunsafe
SangforTrojan.Win32.Agent.Vhwy
AlibabaTrojan:Win32/Rozena.1ad0a32a
Cybereasonmalicious.d4aa8d
BitDefenderThetaAI:Packer.11FCF1BE1E
SymantecW32.Pikabot!gm1
ESET-NOD32a variant of Win32/Rozena_AGen.EU
APEXMalicious
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Trojan.Heur.GZ.wKW@bS545fk
AvastWin32:Evo-gen [Trj]
TencentWin32.Trojan.Generic.Ximw
SophosMal/Generic-S
VIPREGen:Trojan.Heur.GZ.wKW@bS545fk
EmsisoftGen:Trojan.Heur.GZ.wKW@bS545fk (B)
GDataGen:Trojan.Heur.GZ.wKW@bS545fk
Kingsoftmalware.kb.a.999
ArcabitTrojan.Heur.GZ.EB163E
ZoneAlarmUDS:Trojan.Win32.Generic
MicrosoftTrojan:Win32/Wacatac.B!ml
McAfeeArtemis!6F31637D4AA8
MAXmalware (ai score=87)
MalwarebytesGeneric.Malware/Suspicious
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)
alibabacloudTrojan:Win/Generic

How to remove Win32/Rozena_AGen.EU?

Win32/Rozena_AGen.EU removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment