Malware

Heur.MSIL.Vuvazi.C.2 (B) malicious file

Malware Removal

The Heur.MSIL.Vuvazi.C.2 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Heur.MSIL.Vuvazi.C.2 (B) virus can do?

  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Network activity detected but not expressed in API logs

Related domains:

wpad.local-net

How to determine Heur.MSIL.Vuvazi.C.2 (B)?


File Info:

name: 38FD04164498F0C2E322.mlw
path: /opt/CAPEv2/storage/binaries/13151d7c25841d576f6d4dcbeea71e2229c7d03fa9d2a0449dc5c54ca4422769
crc32: 95C2551F
md5: 38fd04164498f0c2e322a8dc65026c58
sha1: a581f8da6d9a6ad8810499785dbbe1b63d80cd61
sha256: 13151d7c25841d576f6d4dcbeea71e2229c7d03fa9d2a0449dc5c54ca4422769
sha512: 6db34d42721ede1c6d8b01f4f74f172d528596dff6211c01d3a66583e238ab8ebe852984a645fb239982af37447b49ac9f78b1993fa3d7470add43e629e0f600
ssdeep: 49152:PRDJzYC1CcTM0hwnqseGxTJw7BqbIIDLLRFIlpA5rFkQ:pDhY9qM0+nhTJwQTRyeJk
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14C95B76BF9D09A63CB199C7BD05A987C4BD9CB4F1F13DA03B2A8436457033ED860D58A
sha3_384: 4eedcc79becd9a09f89ff0ed77c5f3f6146c53b228a05d0ff33171476966ebbd782cbc23873f3a91cffb03e2d4a1c151
ep_bytes: ff250020400000000000000000000000
timestamp: 2014-01-11 11:59:30

Version Info:

Translation: 0x0000 0x04b0
CompanyName: ai2rNRUdRONXQ
FileDescription: ar20izyISGY
FileVersion: 14.19.24.97
InternalName: 1.exe
LegalCopyright: Copyright © 2013
LegalTrademarks: ajJbjetTCdeqATloKMw7
OriginalFilename: 1.exe
ProductName: aJuuKpFkDoWdWGIbO
ProductVersion: 14.19.24.97
Assembly Version: 9.14.19.87

Heur.MSIL.Vuvazi.C.2 (B) also known as:

LionicTrojan.Win32.Generic.lXWr
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.38fd04164498f0c2
McAfeeTrojan-FECN!38FD04164498
CylanceUnsafe
ZillyaTrojan.Generic.Win32.1458472
SangforTrojan.MSIL.CKN.ed
K7AntiVirusTrojan ( 700000121 )
AlibabaTrojan:MSIL/Injector.bfd4b7b8
K7GWTrojan ( 700000121 )
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/MSIL_Troj.NZ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Injector.CKN
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Packed.Fecn-7077459-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Heur.MSIL.Vuvazi.C.2
NANO-AntivirusTrojan.Win32.Disfa.dpvptd
MicroWorld-eScanGen:Heur.MSIL.Vuvazi.C.2
AvastMSIL:GenMalicious-E [Trj]
TencentMsil.Trojan.Dropper.Lnov
Ad-AwareGen:Heur.MSIL.Vuvazi.C.2
EmsisoftGen:Heur.MSIL.Vuvazi.C.2 (B)
ComodoTrojWare.MSIL.TrojanDownloader.Small.DS@6ldchl
DrWebTrojan.DownLoader12.13403
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0PH321
McAfee-GW-EditionBehavesLike.Win32.Dropper.tm
SophosMal/Generic-S
IkarusTrojan.Win32.Ibashade
GDataGen:Heur.MSIL.Vuvazi.C.2
JiangminTrojan.Generic.gzzst
WebrootW32.Rogue.Gen
AviraTR/Dropper.MSIL.Gen
Antiy-AVLTrojan/Generic.ASMalwS.11CB751
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
AhnLab-V3Trojan/Win32.Bladabindi.C2470486
BitDefenderThetaGen:NN.ZemsilF.34294.0n0@am96iTl
ALYacGen:Heur.MSIL.Vuvazi.C.2
MAXmalware (ai score=86)
MalwarebytesTrojan.Crypt.MSIL.Generic
TrendMicro-HouseCallTROJ_GEN.R002C0PH321
YandexTrojan.Agent!xRB4oPqZF1A
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.7164915.susgen
FortinetMSIL/Agent.D279!tr
AVGMSIL:GenMalicious-E [Trj]
PandaTrj/CI.A

How to remove Heur.MSIL.Vuvazi.C.2 (B)?

Heur.MSIL.Vuvazi.C.2 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment