Malware

Application.Heur.cmGfk8DZCRjO removal instruction

Malware Removal

The Application.Heur.cmGfk8DZCRjO is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Heur.cmGfk8DZCRjO virus can do?

  • Unconventionial language used in binary resources: Hebrew
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Application.Heur.cmGfk8DZCRjO?


File Info:

name: 7A1A4D5D1CB489482C2F.mlw
path: /opt/CAPEv2/storage/binaries/974e680cb4635a140cb6ecedc903ae80ddbf61d1ecfd0ecfe337d05d0b60eb8c
crc32: 71761858
md5: 7a1a4d5d1cb489482c2f1bfae19e5625
sha1: 84bc8b0e1d025c4c79b4fb9229e760328a2da195
sha256: 974e680cb4635a140cb6ecedc903ae80ddbf61d1ecfd0ecfe337d05d0b60eb8c
sha512: e169aa0766816ad2e4066d6725c25c4fade0096673d8fba8c7addf155cf685a4e3605d879a3f39b4f8a8b6e9390a90e789c77c282e8d014ec0ec8ab082ac9002
ssdeep: 768:SNeLi/J+T5XaGkvasAHciDGoYatP6WtnkCRGIvIm2amLo8V90:SNB+TTnHKax9vl23O
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A303CF43C9148560CEED0831414B4CF81758FDB632142F83AA983D6EBCF67ABEE1559A
sha3_384: fda422590cc21b3c1b0c219e3c00c2115d7f36fae769c9754ffcd1ac78b6c02f76e4b46f6bee16afb5504e8e9246a04b
ep_bytes: 60be00f040008dbe0020ffff5783cdff
timestamp: 2011-05-15 05:49:48

Version Info:

0: [No Data]

Application.Heur.cmGfk8DZCRjO also known as:

BkavW32.AIDetect.malware1
DrWebTool.PassView.551
MicroWorld-eScanGen:Application.Heur.cmGfk8DZCRjO
FireEyeGeneric.mg.7a1a4d5d1cb48948
ALYacGen:Application.Heur.cmGfk8DZCRjO
ZillyaTool.NetPass.Win32.832
Cybereasonmalicious.d1cb48
CyrenW32/Trojan.OSSZ-3231
SymantecPasswordRevealer
Kasperskynot-a-virus:PSWTool.Win32.NetPass.alk
BitDefenderGen:Application.Heur.cmGfk8DZCRjO
NANO-AntivirusRiskware.Win32.NetPass.cwucpz
Ad-AwareGen:Application.Heur.cmGfk8DZCRjO
SophosGeneric ML PUA (PUA)
EmsisoftGen:Application.Heur.cmGfk8DZCRjO (B)
GDataGen:Application.Heur.cmGfk8DZCRjO
MAXmalware (ai score=73)
Antiy-AVLTrojan/Generic.ASMalwS.1802D
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
McAfeeGenericRXAA-AA!7A1A4D5D1CB4
APEXMalicious
RisingMalware.Heuristic!ET#82% (RDMK:cmRtazr7xpNMPLvst60XfhO7naFP)
SentinelOneStatic AI – Suspicious PE

How to remove Application.Heur.cmGfk8DZCRjO?

Application.Heur.cmGfk8DZCRjO removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment