Trojan

Trojan.Heur.aiedXmCsptni removal instruction

Malware Removal

The Trojan.Heur.aiedXmCsptni is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Heur.aiedXmCsptni virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • CAPE detected the embedded win api malware family
  • Anomalous binary characteristics
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Trojan.Heur.aiedXmCsptni?


File Info:

name: 604AFCA6A128C4325530.mlw
path: /opt/CAPEv2/storage/binaries/093f03e46ad20ee785ec32374e7e6d6282d3a5a72a55c9636010ea47acb9cc77
crc32: FBF8E551
md5: 604afca6a128c43255308d0e096c4a1b
sha1: 6c7cfe81338da54523606f946de7a32dc06a9de1
sha256: 093f03e46ad20ee785ec32374e7e6d6282d3a5a72a55c9636010ea47acb9cc77
sha512: 9fc4439255b5f3e438e3834a9627984046ed817bcaa96fe10dfd1a33be7d6e61cb20d0bbb54d635db5a8e1ce13d94cd1a0d7792aee654c5f0a5d452dc383dcb4
ssdeep: 1536:d2BH1HYrcECTXYfsotmXQhZeV43llSrhQTTcc3sSGcrU7cfD8cqCfRjabQdUE4+R:dYHYpEKoQhz+rhe4u8cr3qCZ+E4B6
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18CF39E1331E0CCF3D16A41310EA29BBAA7BAE9708A314F13A3D49B1D5E3D6455E2635F
sha3_384: 078c694c231748531aaf978182d838a30c91c3b312e88774834f518407bca831b7d98f1d93af6800b5fcd2fa39f5cffd
ep_bytes: 60e8000000005b8d5bc6011b8b138d73
timestamp: 2004-07-20 09:34:22

Version Info:

0: [No Data]

Trojan.Heur.aiedXmCsptni also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.leu6
tehtrisGeneric.Malware
MicroWorld-eScanGen:Trojan.Heur.aiedXmCsptni
FireEyeGeneric.mg.604afca6a128c432
SkyhighBehavesLike.Win32.Downloader.cm
McAfeeArtemis!604AFCA6A128
MalwarebytesUrelas.Trojan.Downloader.DDS
ZillyaTrojan.Keylogger.Win32.55132
SangforSuspicious.Win32.Save.ins
K7AntiVirusRiskware ( 0015e4f11 )
AlibabaTrojanSpy:Win32/Elite.aa50e35b
K7GWRiskware ( 0015e4f11 )
Cybereasonmalicious.6a128c
BitDefenderThetaGen:NN.ZexaF.36802.jihkai!R4Mb
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32Win32/Spy.Elite.10.A
APEXMalicious
TrendMicro-HouseCallTROJ_GEN.R03BC0DAT24
ClamAVWin.Packed.ProRat-9368771-0
KasperskyTrojan-Spy.Win32.KeyLogger.bp
BitDefenderGen:Trojan.Heur.aiedXmCsptni
NANO-AntivirusTrojan.Win32.Havar.cvsjm
AvastWin32:KeyLogger-AQ [Trj]
TencentWin32.Trojan-Spy.Keylogger.Tzfl
EmsisoftGen:Trojan.Heur.aiedXmCsptni (B)
BaiduWin32.Trojan.Generic.ae
F-SecureTrojan.TR/Keylogger.BP.2
DrWebTrojan.Elite.10
VIPREGen:Trojan.Heur.aiedXmCsptni
TrendMicroTROJ_GEN.R03BC0DAT24
Trapminemalicious.moderate.ml.score
SophosTroj/EliteKey-A
IkarusTrojan-Spy.Win32.KeyLogger.CC
JiangminTrojanSpy.Keylogger.cn
GoogleDetected
AviraTR/Keylogger.BP.2
VaristW32/Keylogger.DXNP-0395
Antiy-AVLTrojan[Spy]/Win32.KeyLogger
KingsoftWin32.HeurC.KVMH008.a
MicrosoftTrojan:Win32/Vigorf.A
XcitiumPacked.Win32.MNSP.Gen@2697wr
ArcabitTrojan.Heur.aiedXmCsptni [many]
ZoneAlarmTrojan-Spy.Win32.KeyLogger.bp
GDataGen:Trojan.Heur.aifdXmCsptni
CynetMalicious (score: 100)
VBA32BScope.TrojanSpy.Keylogger
ALYacGen:Trojan.Heur.aifdXmCsptni
MAXmalware (ai score=100)
Cylanceunsafe
PandaTrj/Keylog.LH
RisingTrojan.Vigorf!8.EAEA (TFE:5:cmTefYKnlyD)
YandexTrojan.GenAsa!ZpdLiTVbSEg
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.14956.susgen
FortinetW32/Keylogger.BP!tr
AVGWin32:KeyLogger-AQ [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)
alibabacloudTrojan[spy]:Win/Elite

How to remove Trojan.Heur.aiedXmCsptni?

Trojan.Heur.aiedXmCsptni removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment