Malware

WinGo/Rozena.AX removal

Malware Removal

The WinGo/Rozena.AX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What WinGo/Rozena.AX virus can do?

  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX

How to determine WinGo/Rozena.AX?


File Info:

crc32: 8A0E0C8C
md5: 40c5602cc0615c7d0a9d90de7c4583f4
name: 40C5602CC0615C7D0A9D90DE7C4583F4.mlw
sha1: 74c71df13c5b02e5bb56ce0f750f0d8a9191ef3a
sha256: b91b69cb3e8d5b70cb75b444d721bf9e6cf804b781623ba90b38431ddca4d0da
sha512: 175a28227be0496cfe82a977d0f510c4fbc8db6d701289b167030beb04d0857c92f3021e55d65aba8d2b9223191b5438a6bc131feb5c99543ed8c92bc178e731
ssdeep: 24576:VZzQNPwrHdtEtduE2WMXt8aiWbQjUrd2hghm7G7aZr:VySbEKl98afbQVBC7aZ
type: PE32+ executable (console) x86-64 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

WinGo/Rozena.AX also known as:

K7AntiVirusTrojan ( 0057cca31 )
LionicTrojan.Win32.Shelma.4!c
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.36991444
CylanceUnsafe
ZillyaTrojan.Shelma.Win32.9374
SangforTrojan.Win32.Shelma.bjhs
AlibabaTrojan:Win32/Shelma.e52ffe11
K7GWTrojan ( 0057cca31 )
Cybereasonmalicious.13c5b0
SymantecTrojan.Gen.2
ESET-NOD32a variant of WinGo/Rozena.AX
APEXMalicious
AvastWin64:Trojan-gen
KasperskyTrojan.Win32.Shelma.bjhs
BitDefenderTrojan.GenericKD.36991444
MicroWorld-eScanTrojan.GenericKD.36991444
TencentWin32.Trojan.Shelma.Pciv
Ad-AwareTrojan.GenericKD.36991444
SophosMal/Generic-S
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R023C0DEU21
McAfee-GW-EditionBehavesLike.Win64.Generic.dc
FireEyeTrojan.GenericKD.36991444
EmsisoftTrojan.GenericKD.36991444 (B)
Antiy-AVLTrojan/Generic.ASBOL.C689
MicrosoftVirTool:Win32/Shrine.A
ZoneAlarmTrojan.Win32.Shelma.bjhs
GDataTrojan.GenericKD.36991444
McAfeeArtemis!40C5602CC061
MAXmalware (ai score=85)
MalwarebytesTrojan.Rozena
TrendMicro-HouseCallTROJ_GEN.R023C0DEU21
IkarusTrojan.Win64.Krypt
MaxSecureTrojan.Malware.300983.susgen
FortinetMalicious_Behavior.SB
AVGWin64:Trojan-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.DogHousePower.HgEASVgA

How to remove WinGo/Rozena.AX?

WinGo/Rozena.AX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment