Crack

What is “Win32:Patched-AWW [Trj]”?

Malware Removal

The Win32:Patched-AWW [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32:Patched-AWW [Trj] virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Win32:Patched-AWW [Trj]?


File Info:

name: 713378572B17BA355BD1.mlw
path: /opt/CAPEv2/storage/binaries/1644163be91388828a1bf7186c710e08483e625792e023dad8bdb06ef21ab6eb
crc32: F741CFA0
md5: 713378572b17ba355bd1ca78abc8ff8b
sha1: 2ae16d24a5c7b710ace3d4c1e601f0a7c0d2aa67
sha256: 1644163be91388828a1bf7186c710e08483e625792e023dad8bdb06ef21ab6eb
sha512: a77fbd40573f9b2b2f938fc710faf6ab026df3802acbd7d8549da8f523754cb332cc0590be0c95647381350b9e32c3d4897136d0bf2c1f34ffd3e15f4d9565e1
ssdeep: 6144:9tCqTBNorwiYa/pOAHTIOAPH9Eg0QsqjYjaCBkms:9tCqTO+a/pOAH6iQs8/Okv
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1AD64CF1B3EA14492FC7A457214FE474879F5E400011E2CEFEBD36B18927B936B6582AF
sha3_384: b4df69ef5302fb2945a2be8641e691c8fa57ca5efd0626fd3b0308c379609acb356468b7291d1b8422e38a7b38ee91e5
ep_bytes: 558bec6aff68809f400068606e400064
timestamp: 2008-05-30 23:46:14

Version Info:

0: [No Data]

Win32:Patched-AWW [Trj] also known as:

CyrenCloudW32/Convagent.DV.gen!Threatlookup
BkavW32.AIDetectMalware
LionicTrojan.Win32.Convagent.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Fragtor.355555
FireEyeGen:Variant.Fragtor.355555
SkyhighBehavesLike.Win32.Backdoor.fc
McAfeeArtemis!713378572B17
MalwarebytesGeneric.Malware/Suspicious
SangforBackdoor.Win32.Doina.Vkgn
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaBackdoor:Win32/Doina.97366b67
K7GWTrojan ( 00581e311 )
K7AntiVirusTrojan ( 00581e311 )
ArcabitTrojan.Fragtor.D56CE3
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Patched.JD
CynetMalicious (score: 100)
APEXMalicious
KasperskyVirus.Win32.Senoval.a
BitDefenderGen:Variant.Fragtor.355555
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
AvastWin32:Patched-AWW [Trj]
TencentTrojan.Win32.Pathced_ya.16001052
Ad-AwareGen:Variant.Fragtor.355555
EmsisoftGen:Variant.Fragtor.355555 (B)
VIPREGen:Variant.Fragtor.355555
TrendMicroTROJ_GEN.R002C0DJ623
Trapminemalicious.high.ml.score
SophosGeneric Reputation PUA (PUA)
IkarusTrojan.Win32.Patched
VaristW32/Convagent.DV.gen!Eldorado
Antiy-AVLTrojan/Win32.Patched
MicrosoftTrojan:Win32/Doina.RPX!MTB
ZoneAlarmVirus.Win32.Senoval.a
GDataWin32.Trojan.PSE.1A5O94J
GoogleDetected
AhnLab-V3Malware/Win.Generic.C5482186
VBA32BScope.Backdoor.Convagent
ALYacGen:Variant.Fragtor.355555
MAXmalware (ai score=84)
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002C0DJ623
RisingTrojan.Generic@AI.100 (RDML:o2R6DvNBZEaRgQB0zyXnxQ)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetAdware/Adware_AGen
AVGWin32:Patched-AWW [Trj]
DeepInstinctMALICIOUS

How to remove Win32:Patched-AWW [Trj]?

Win32:Patched-AWW [Trj] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment