Trojan

Trojan.Heur.gi2frjVsWVjib removal guide

Malware Removal

The Trojan.Heur.gi2frjVsWVjib is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Heur.gi2frjVsWVjib virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan.Heur.gi2frjVsWVjib?


File Info:

name: BE0B1480067F95E1ECCF.mlw
path: /opt/CAPEv2/storage/binaries/3003ce0ee7e44abda8f66640414db7689d7ceeb78dbad548083fc987d9d4a552
crc32: 1C15AA00
md5: be0b1480067f95e1eccf57404a286602
sha1: 0a4fef29cd40e7942a2e6780cff7962d45422e15
sha256: 3003ce0ee7e44abda8f66640414db7689d7ceeb78dbad548083fc987d9d4a552
sha512: 4a5894f5b9bae3591378ef358bc2f1b0cb8cb95ca9f5f12ad0f53785c5eed87cc72c7fb87db8d3220f712264def80cd8452ee58ca1fe1817b11e6d034eb4d16e
ssdeep: 1536:oJl/qDqST37XtL36a8EbbAhf1zwQVgjt:oJRaqSTL9LZ7AR1zwLjt
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T13CA339036B75FDC5E090693109B24A9846DCBD22DD2234636D913EEFFE36386BA0DD52
sha3_384: 2c4180654ce2db7669daedf59094c640c871587d08a808eccf15bc064e8fd5f7bcc841c5f1aac21c1d9a75f7f696e044
ep_bytes: b8d41f43005064ff3500000000648925
timestamp: 2012-08-19 01:06:20

Version Info:

Translation: 0x0409 0x04b0
ProductName: worm
FileVersion: 1.00
ProductVersion: 1.00
InternalName: honey
OriginalFilename: honey.exe

Trojan.Heur.gi2frjVsWVjib also known as:

BkavW32.SecretCNC.Heur
LionicWorm.Win32.AutoRun.lobP
tehtrisGeneric.Malware
MicroWorld-eScanGen:Trojan.Heur.gi2frjVsWVjib
ClamAVLegacy.Trojan.Agent-1388588
FireEyeGeneric.mg.be0b1480067f95e1
CAT-QuickHealWorm.VB.HA
ALYacGen:Trojan.Heur.gi2frjVsWVjib
CylanceUnsafe
VIPREGen:Trojan.Heur.gi2frjVsWVjib
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0040f6881 )
K7GWTrojan ( 0040f6881 )
CrowdStrikewin/malicious_confidence_100% (W)
BaiduWin32.Worm.AutoRun.hk
VirITTrojan.Win32.Fiha.A
CyrenW32/AutoRun.AK.gen!Eldorado
SymantecTrojan.Rontokbro
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/AutoRun.VB.CN
APEXMalicious
CynetMalicious (score: 100)
KasperskyWorm.Win32.VBNA.b
BitDefenderGen:Trojan.Heur.gi2frjVsWVjib
NANO-AntivirusTrojan.Win32.AutoRun.dxnmdm
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.FakeFolder.pa
Ad-AwareGen:Trojan.Heur.gi2frjVsWVjib
TACHYONWorm/W32.AutoRun.102912.P
SophosML/PE-A + W32/Autorun-ASW
ComodoWorm.Win32.Autorun.eb0@13re4o
DrWebWin32.HLLW.Autoruner.33600
ZillyaWorm.VBNA.Win32.834144
TrendMicroMal_OtorunN
McAfee-GW-EditionBehavesLike.Win32.Generic.ct
Trapminemalicious.high.ml.score
EmsisoftGen:Trojan.Heur.gi2frjVsWVjib (B)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.1RDM75I
JiangminTrojan/Generic.azimk
WebrootW32.Trojan.Gen
AviraTR/Crypt.PEPM.Gen
Antiy-AVLTrojan/Generic.ASMalwS.22
KingsoftWin32.Troj.Generic_01.k.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
AhnLab-V3HEUR/Fakon.mwf.X1381
McAfeeW32/Autorun.worm.hu
MAXmalware (ai score=82)
VBA32Worm.VB.FakeCodec
MalwarebytesMalware.Heuristic.1001
TrendMicro-HouseCallMal_OtorunN
RisingWorm.VobfusEx!1.99DF (CLASSIC)
YandexWorm.AutoRun!UdrxeZdnGLc
IkarusWorm.SuspectCRC
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.VP!worm
BitDefenderThetaAI:Packer.BA3F92521D
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.0067f9
PandaTrj/Genetic.gen

How to remove Trojan.Heur.gi2frjVsWVjib?

Trojan.Heur.gi2frjVsWVjib removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment