Crack

Win32:Patched-AWW [Trj] information

Malware Removal

The Win32:Patched-AWW [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32:Patched-AWW [Trj] virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Win32:Patched-AWW [Trj]?


File Info:

name: 7C03E46DE5D43BEC7B7A.mlw
path: /opt/CAPEv2/storage/binaries/e340106c9d690c9e90992feaeab5ccc99fd756965a7492d40bcf03a8f4a6fc64
crc32: BB52E894
md5: 7c03e46de5d43bec7b7a81077faa3b23
sha1: 134bff8ac61821882f35705d79ad2072a38511e8
sha256: e340106c9d690c9e90992feaeab5ccc99fd756965a7492d40bcf03a8f4a6fc64
sha512: da8fe34d24353dc7b6f72a5fa82f0e25bcbde89afdb69efa02e48984e85288287c44d59df09115755ba4cb79ecd10c38a15d94e194a1c886929550fdb55eca44
ssdeep: 12288:oZAnM5y8KOeCDb+HufCx/pRy6z2V7xbw8w0LsLzBv9ZsgosDrD3fbCg:lCQpo5yzxLoWj
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C0055C127495E03ED4B25AF49929CBF96D38AF611E55A8C366C03FAC7F71986C02133B
sha3_384: caec73a3928ee5815c0faf4073fa9cc7a06b4f0562c1027cf22be4147e8e9b2b349eea6706ac5fd7adea1cee60dc4c39
ep_bytes: 64a100000000558bec6aff6810334500
timestamp: 2000-11-09 19:18:43

Version Info:

CompanyName: Design Science, Inc.
FileDescription: Microsoft Equation Editor
FileVersion: 00110900
InternalName: Equation Editor
LegalCopyright: Copyright © Design Science, Inc. 1990-2000
LegalTrademarks:
OriginalFilename: EQNEDT32.EXE
ProductName: Microsoft Equation Editor
ProductVersion: 3.1
Translation: 0x0409 0x04e4

Win32:Patched-AWW [Trj] also known as:

BkavW32.AIDetectMalware
LionicVirus.Win32.Convagent.n!c
MicroWorld-eScanGen:Variant.Doina.63205
FireEyeGeneric.mg.7c03e46de5d43bec
SkyhighBehavesLike.Win32.Triusor.ch
McAfeeRDN/Generic BackDoor
Cylanceunsafe
ZillyaBackdoor.Convagent.Win32.6177
SangforTrojan.Win32.Kryptik.Vrgp
K7AntiVirusTrojan ( 005ad28b1 )
AlibabaBackdoor:Win32/Convagent.fab1abba
K7GWTrojan ( 005ad28b1 )
ArcabitTrojan.Doina.DF6E5
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/GenKryptik.GNNJ
CynetMalicious (score: 100)
KasperskyVirus.Win32.Senoval.a
BitDefenderGen:Variant.Doina.63205
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
AvastWin32:Patched-AWW [Trj]
TencentTrojan.Win32.Pathced_ya.16001052
EmsisoftGen:Variant.Doina.63205 (B)
F-SecureTrojan.TR/Kryptik.edvsz
VIPREGen:Variant.Doina.63205
TrendMicroTROJ_GEN.R002C0XIL23
SophosMal/Generic-S
IkarusTrojan.Win32.Krypt
VaristW32/Convagent.DQ.gen!Eldorado
AviraTR/Kryptik.edvsz
Antiy-AVLTrojan/Win32.GenKryptik
KingsoftWin32.Infected.AutoInfector.a
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmVirus.Win32.Senoval.a
GDataWin32.Trojan.PSE.12G4II2
GoogleDetected
AhnLab-V3Malware/Win.Generic.C5482099
ALYacGen:Variant.Doina.63205
MAXmalware (ai score=84)
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0XIL23
RisingTrojan.Generic@AI.100 (RDML:H6FlufqNKw0e1Ay5NtXv5g)
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/GenKryptik.GNNJ!tr
AVGWin32:Patched-AWW [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Win32:Patched-AWW [Trj]?

Win32:Patched-AWW [Trj] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment