Malware

What is “Heur.FKP.4 (B)”?

Malware Removal

The Heur.FKP.4 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Heur.FKP.4 (B) virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Heur.FKP.4 (B)?


File Info:

name: 02E60D63E172C439C15D.mlw
path: /opt/CAPEv2/storage/binaries/737835771c03a921afa6b47b8203bc12d1cd0fed5d4188a421c13287c52e6eed
crc32: B88DE332
md5: 02e60d63e172c439c15d5206d686eb66
sha1: 0a98a530ed81583df78f8422ac3f1ebf8a84c74e
sha256: 737835771c03a921afa6b47b8203bc12d1cd0fed5d4188a421c13287c52e6eed
sha512: ed8907af8fb20f98b9580cf82f7ec31de39bcfc281f8cd2d8cba310347197bee3070fe934906f14a675cdc7512343281b560ef1777f9210ee4a82cd78afd6972
ssdeep: 384:GyXCWMf9jZP+TbTQaIbWAfr9dxnxJi76JiCHb+fztUmTR1OF:NXCWMfhITnQaI6+BdxxJM6JjCxP+F
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T115F24B1AAA20863FE076813315528B3D5EFA7D113E0D5EC7E61C2509BD21A5DDF6338D
sha3_384: f2da6aa296d78935f8ba2b2567e15b2b111fcfaced8b92c30576a1fc1749d941e795c209ed6aaadfc70a3d20f738d2f2
ep_bytes: 558bec81ec1803000056576a06be0c75
timestamp: 2000-10-20 17:07:44

Version Info:

0: [No Data]

Heur.FKP.4 (B) also known as:

LionicTrojan.Win32.Agent.a!c
MicroWorld-eScanGen:Heur.FKP.4
FireEyeGeneric.mg.02e60d63e172c439
McAfeeArtemis!02E60D63E172
CylanceUnsafe
SangforTrojan.Win32.Generic.ky
AlibabaTrojan:Win32/WrongInf.06e01dda
Cybereasonmalicious.3e172c
CyrenW32/Agent.RU.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
APEXMalicious
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Heur.FKP.4
NANO-AntivirusTrojan.Win32.Agent.dxquex
AvastWin32:Virtu-F [Inf]
TencentWin32.Trojan.Generic.Gbu
Ad-AwareGen:Heur.FKP.4
TACHYONTrojan/W32.Small.36864.BHL
SophosMal/Generic-S
ComodoMalware@#3gl8n9ob75tk9
VIPREGen:Heur.FKP.4
TrendMicroTROJ_GEN.R067C0GHK22
McAfee-GW-EditionArtemis!Trojan
Trapminesuspicious.low.ml.score
EmsisoftGen:Heur.FKP.4 (B)
SentinelOneStatic AI – Suspicious PE
GDataGen:Heur.FKP.4
GoogleDetected
AviraHEUR/AGEN.1205157
KingsoftWin32.Troj.Undef.(kcloud)
ArcabitTrojan.FKP.4
MicrosoftTrojan:Win32/Occamy.C73
CynetMalicious (score: 99)
AhnLab-V3Downloader/Win32.Agent.R27921
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34606.cuW@a4aM!qai
ALYacGen:Heur.FKP.4
MAXmalware (ai score=100)
MalwarebytesMalware.Heuristic.1001
RisingTrojan.Generic@AI.98 (RDML:GdM3/unbULqvyHXAlumfyA)
IkarusTrojan-Dropper.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/CoinMiner.F
AVGWin32:Virtu-F [Inf]
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Heur.FKP.4 (B)?

Heur.FKP.4 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment