Trojan

Trojan.Binded removal

Malware Removal

The Trojan.Binded is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Binded virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Uses Windows utilities for basic functionality
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Binded?


File Info:

crc32: 6B29D2C3
md5: 58693bc7111b2826a16c1b78d939d271
name: biba.exe
sha1: 2901a6a35f54ffd4293c88f27430298f6ccf324f
sha256: 3208460a85399d597d40274cdeaea7c89766b7d419666bf69c318dabb23df603
sha512: 18f98a89dcf99b425750a85cacf80f165b612e6c7ddc26e8872c30e429a5953e4a8754f53fcc916023b61ec742027a3f0564d9c45d4c211c0b45abfc145605c7
ssdeep: 12288:wYV6vI5mapVvSetzGgHe0H40zx1MIHTohQFfHvpuyCy8C:wYp5JJwg+o4Wx1MIHMQFfHvpHX8C
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Trojan.Binded also known as:

FireEyeGeneric.mg.58693bc7111b2826
CAT-QuickHealVirTool.Vbinder.CO5
McAfeeRDN/Generic Dropper
CylanceUnsafe
AegisLabHacktool.Win32.Binder.lo77
K7AntiVirusTrojan ( 004babd11 )
K7GWTrojan ( 004babd11 )
CrowdStrikewin/malicious_confidence_90% (W)
TrendMicroTROJ_GEN.R002C0DJ719
BaiduWin32.Trojan-Dropper.Binder.m
F-ProtW32/Renos.HM
SymantecSMG.Heur!gen
TotalDefenseWin32/Tnega.AGBZ
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Tool.Binder-6750589-0
GDataWin32.Trojan.CBinder.879DR3
KasperskyHackTool.Win32.Binder.bs
AlibabaTrojanDropper:Win32/Binder.1f7c960e
ViRobotTrojan.Win32.A.Swisyn.49120[UPX]
TencentWin32.Hacktool.Binder.Swbh
ComodoTrojWare.Win32.TrojanDropper.Binder.cls@4m6ovz
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.MulDrop2.39589
ZillyaDropper.Binder.Win32.19058
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Ransomware.gc
Trapminemalicious.high.ml.score
CMCHackTool.Win32.Binder!O
SophosMal/Generic-S
IkarusTrojan-Ransom.HiddenTear
CyrenW32/Renos.TYAH-0409
JiangminHackTool.Binder.bh
MaxSecureHackTool.W32.Binder.bs
AviraTR/Dropper.Gen
Antiy-AVLHackTool/Win32.Binder.bs
Endgamemalicious (moderate confidence)
ZoneAlarmHackTool.Win32.Binder.bs
MicrosoftTrojan:Win32/Occamy.C
AhnLab-V3Trojan/Win32.HackTool.C233787
Acronissuspicious
VBA32Binder.Celesty
MalwarebytesTrojan.Binded
PandaTrj/Genetic.gen
ESET-NOD32Win32/TrojanDropper.Binder.NBH
TrendMicro-HouseCallTROJ_GEN.R002H06J819
RisingDropper.Binder!1.AEB1 (CLASSIC)
YandexTrojan.DR.Binder!HaaCHM2PpII
SentinelOneDFI – Malicious PE
eGambitTrojan.Generic
FortinetW32/Dropper.NBH!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Hacktool.4af

How to remove Trojan.Binded?

Trojan.Binded removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment