Malware

What is “Win32:GenMalicious-KKX [Trj]”?

Malware Removal

The Win32:GenMalicious-KKX [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32:GenMalicious-KKX [Trj] virus can do?

  • Executable code extraction
  • Unconventionial language used in binary resources: Spanish (Modern)
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32:GenMalicious-KKX [Trj]?


File Info:

crc32: 2CF3DD8C
md5: 1020a987fa47f29202058a2031f4633a
name: 1020A987FA47F29202058A2031F4633A.mlw
sha1: 05d9c96c9251012711f742d38ffb455609d818a2
sha256: babaeb6d9f2c8c79e6a994225088bf47b1c4759819688b5b8ec50672e2c40e86
sha512: 1be1c0c911b6e2bd9f4db4a4ad9ee1a6d86e6e5efa4cafa5e3f9c005226a84ceece4446787c66091945d7e43d037c78ed4ea8e19c923c14ce5d60c49f93f4dc8
ssdeep: 6144:3O+oofUzGvgzLeaIcqEnGCw2DvqfZZTVLX+wUnJgUvM8V:3O+oDmgzLnSEnGCDvcZ5BX+1nJr08V
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0c0a 0x04b0
InternalName: stub
FileVersion: 1.00
CompanyName: server
ProductName: stub
ProductVersion: 1.00
OriginalFilename: stub.exe

Win32:GenMalicious-KKX [Trj] also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 002a405c1 )
Elasticmalicious (high confidence)
DrWebWin32.HLLW.SpyNet.449
CynetMalicious (score: 100)
CAT-QuickHealTrojan.VBCrypt.MF.5920
ALYacGen:Trojan.Heur.sm0@bXr2sCK
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Vbinder.59847656
K7GWTrojan ( 002a405c1 )
Cybereasonmalicious.7fa47f
CyrenW32/VBInject.CC.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.APV
APEXMalicious
AvastWin32:GenMalicious-KKX [Trj]
KasperskyTrojan.Win32.Agent.voex
BitDefenderGen:Trojan.Heur.sm0@bXr2sCK
NANO-AntivirusTrojan.Win32.WBNA.fjhgoz
ViRobotTrojan.Win32.PSWLdPinch.462848
MicroWorld-eScanGen:Trojan.Heur.sm0@bXr2sCK
Ad-AwareGen:Trojan.Heur.sm0@bXr2sCK
SophosML/PE-A + Mal/VB-FD
ComodoBackdoor.Win32.Poison.~FFG@1x8tus
BitDefenderThetaAI:Packer.0A717CCC1B
VIPREVirTool.Win32.VBInject.gen.bp (v)
TrendMicroMal_BUZUS-6
McAfee-GW-EditionBehavesLike.Win32.VBObfus.fc
FireEyeGeneric.mg.1020a987fa47f292
EmsisoftGen:Trojan.Heur.sm0@bXr2sCK (B)
SentinelOneStatic AI – Malicious PE
JiangminWorm/VBNA.gysl
AviraTR/Agent.291860
eGambitUnsafe.AI_Score_99%
MicrosoftVirTool:Win32/VBInject.RT
ZoneAlarmWorm.Win32.VBNA.b
GDataGen:Trojan.Heur.sm0@bXr2sCK
AhnLab-V3Trojan/Win32.Poison.R12492
McAfeeBackDoor-DZP.b
MAXmalware (ai score=86)
VBA32Malware-Cryptor.VB.gen.1
MalwarebytesMalware.AI.4250797362
TrendMicro-HouseCallMal_BUZUS-6
RisingTrojan.Agent!8.B1E (CLOUD)
YandexTrojan.GenAsa!qHSnzlLuCE8
IkarusVirTool.Win32.Vbinder
FortinetW32/VBInjector.fam!tr
AVGWin32:GenMalicious-KKX [Trj]
Paloaltogeneric.ml

How to remove Win32:GenMalicious-KKX [Trj]?

Win32:GenMalicious-KKX [Trj] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment