Trojan

Trojan.Banload.LUW (file analysis)

Malware Removal

The Trojan.Banload.LUW is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Banload.LUW virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Starts servers listening on 127.0.0.1:0

Related domains:

dbsq0010.whservidor.com

How to determine Trojan.Banload.LUW?


File Info:

crc32: 718D3346
md5: 20c0985d76d100ae87e87cf571b5fe6c
name: 20C0985D76D100AE87E87CF571B5FE6C.mlw
sha1: 72930ca41d7db0ce272d5bb8c306430bce26da48
sha256: 20a70fa6fbaa28f52de5a4a36a1b41c50c35e5c9809e162a03b05459fc6f9c34
sha512: 3f18ef3d53b0e3db9cf62d445db0f1c0cd0bb83fbc2f1f75dd9558fe41798e0f7dd6f80f412ca00a5258eed229259e0cee09ba77c017b6192dee7bb2bd13af85
ssdeep: 1536:s35T5sHgSJ8Ng2QYUxefpZgREsbtDIcWXQJukbIdD3V3nj:U5T5sBGg2QfMf0EsbtDIJ7kbiDFXj
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: eaabe8e612a74e208b9454d5e795d926
Assembly Version: 1.0.0.0
InternalName: ffinalload.exe
FileVersion: 1.0.0.0
ProductName: eaabe8e612a74e208b9454d5e795d926
ProductVersion: 1.0.0.0
FileDescription: eaabe8e612a74e208b9454d5e795d926
OriginalFilename: ffinalload.exe

Trojan.Banload.LUW also known as:

K7AntiVirusTrojan ( 700000121 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacTrojan.Banload.LUW
CylanceUnsafe
ZillyaTrojan.Generic.Win32.392241
SangforTrojan.Win32.Banload.LUW
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:MSIL/Infostealer.a26e91ad
K7GWTrojan ( 700000121 )
Cybereasonmalicious.d76d10
CyrenW32/MSIL_Kryptik.BUN.gen!Eldorado
SymantecInfostealer.Limitail
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.AVV
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Banload.LUW
NANO-AntivirusTrojan.Win32.Banload.fkukxx
MicroWorld-eScanTrojan.Banload.LUW
TencentMsil.Trojan-downloader.Agent.Hqlk
Ad-AwareTrojan.Banload.LUW
SophosMal/Generic-S
ComodoMalware@#1k3nwvplzhgdp
BitDefenderThetaGen:NN.ZemsilF.34294.eq1@aK4jusl
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.20c0985d76d100ae
EmsisoftTrojan.Banload.LUW (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1125955
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.29B4ABD
MicrosoftBackdoor:Win32/Bladabindi!ml
ArcabitTrojan.Banload.LUW
GDataTrojan.Banload.LUW
AhnLab-V3Downloader/Win32.Generic.C941787
McAfeeArtemis!20C0985D76D1
MAXmalware (ai score=82)
VBA32TScope.Trojan.MSIL
PandaTrj/CI.A
YandexTrojan.Agent!FIp1N52jQ3Q
IkarusTrojan-Downloader.MSIL.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.AVV!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.Banload.LUW?

Trojan.Banload.LUW removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment