Malware

Packed.Multi.SuspiciousPacker malicious file

Malware Removal

The Packed.Multi.SuspiciousPacker is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Packed.Multi.SuspiciousPacker virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Packed.Multi.SuspiciousPacker?


File Info:

name: 0EC5DE2E19CF7629303B.mlw
path: /opt/CAPEv2/storage/binaries/4c6aa707bc9e3cc3c25666563dbb6e59353bc46ceb70fe084d7654d4af99fbfd
crc32: E23A5BEC
md5: 0ec5de2e19cf7629303b9fde0b2ced4b
sha1: e6e0443f03835118dd70489ec813f259942b49cc
sha256: 4c6aa707bc9e3cc3c25666563dbb6e59353bc46ceb70fe084d7654d4af99fbfd
sha512: d8a5fffec4f5e45d21434a0ad6ab4ad009257ff6856ac13fea0759e9818ef285c045114e1de658e5b2a5da0d9a649f44055e2d04b7fe70b63c9a68861c43bd66
ssdeep: 49152:vGcLWemkBzkA0w5cjJRppj/0LLv9GiTGQy:KkcrT
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T199952B41BBF8C5E4E16BA2788976D9B9F6B2B8820D30970F51A1D71F1F337605D28722
sha3_384: a9f2402433e8f086cc2235f08eae5b1c4f1185c6a62c61630e64b90b6f345a2f712fc1c5748174cefc5a9b470fed0665
timestamp: 2019-08-23 01:42:03

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Microsoft Office component
FileVersion: 16.0.11929.20234
InternalName: msoadfsb
LegalTrademarks1: Microsoft® is a registered trademark of Microsoft Corporation.
LegalTrademarks2: Windows® is a registered trademark of Microsoft Corporation.
OriginalFilename: msoadfsb.exe
ProductName: Microsoft Office
ProductVersion: 16.0.11929.20234
Translation: 0x0000 0x04e4

Packed.Multi.SuspiciousPacker also known as:

LionicHacktool.Multi.SuspiciousPacker.x!c
MicroWorld-eScanTrojan.GenericKD.38096074
FireEyeGeneric.mg.0ec5de2e19cf7629
ALYacTrojan.GenericKD.38096074
CylanceUnsafe
KasperskyPacked.Multi.SuspiciousPacker.gen
BitDefenderTrojan.GenericKD.38096074
NANO-AntivirusVirus.Win64.Gen.ccng
Ad-AwareTrojan.GenericKD.38096074
SophosMal/Generic-S
EmsisoftTrojan.GenericKD.38096074 (B)
GDataTrojan.GenericKD.38096074
GridinsoftRansom.Win64.Sabsik.sa
ArcabitTrojan.Generic.D2454CCA
MAXmalware (ai score=85)
VBA32Trojan.Sabsik.FL
TrendMicro-HouseCallTROJ_GEN.R002H07KO21
PandaTrj/CI.A

How to remove Packed.Multi.SuspiciousPacker?

Packed.Multi.SuspiciousPacker removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment