Trojan

Should I remove “Trojan.GuLoader”?

Malware Removal

The Trojan.GuLoader is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.GuLoader virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.GuLoader?


File Info:

crc32: A2972AA6
md5: 5822ba45665cf0903f2be8f493a137f6
name: major.exe
sha1: d8cbb5ee4ffee9d7f51ed2c890cfba1fc13e15eb
sha256: 58061bda8472614fa7660f2c6747e894810230244c223de529d4351296f27210
sha512: 13f666f06b9cc7d1f40a4f65c95624bef6935dafedf425c2d3017de53028f7949683102a18634db4a05fdebfd13a5cc83e49a78a02243c283e8d722ef3bddd45
ssdeep: 768:TJFw1oICJ41YX3VVvWYD13X3mua5xP+luA/:TJFXIj1CldWYD13X3mPHE
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: Libellarynrin1
InternalName: Gdningsopbev5
FileVersion: 1.00
CompanyName: Hegemo
LegalTrademarks: Ejgildsoptanke
Comments: cryochoricgua
ProductName: Stenbuksunfaca9
ProductVersion: 1.00
FileDescription: BENZINPRISENR
OriginalFilename: Gdningsopbev5.exe

Trojan.GuLoader also known as:

MicroWorld-eScanTrojan.GenericKD.42831693
CylanceUnsafe
SangforMalware
BitDefenderTrojan.GenericKD.42831693
CrowdStrikewin/malicious_confidence_60% (W)
BitDefenderThetaGen:NN.ZevbaCO.34098.em0@aiREMUfi
GDataWin32.Trojan-Downloader.Dagurleo.UW1YQ1
KasperskyBackdoor.Win32.Remcos.mxo
AlibabaBackdoor:Win32/Remcos.b3f64911
Ad-AwareTrojan.GenericKD.42831693
Invinceaheuristic
McAfee-GW-EditionFareit-FRP!5822BA45665C
EmsisoftTrojan.GenericKD.42831693 (B)
APEXMalicious
ArcabitTrojan.Generic.D28D8F4D
ZoneAlarmBackdoor.Win32.Remcos.mxo
MicrosoftTrojan:Win32/Wacatac.C!ml
McAfeeFareit-FRP!5822BA45665C
MalwarebytesTrojan.GuLoader
ESET-NOD32a variant of Win32/Injector.EKYR
MAXmalware (ai score=86)
eGambitUnsafe.AI_Score_99%
FortinetW32/Injector.EKPC!tr
AVGFileRepMalware

How to remove Trojan.GuLoader?

Trojan.GuLoader removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment