Trojan

About “Trojan.Heur.GM.0000600648” infection

Malware Removal

The Trojan.Heur.GM.0000600648 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Heur.GM.0000600648 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Executable file is packed/obfuscated with ASPack
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

Related domains:

wpad.local-net

How to determine Trojan.Heur.GM.0000600648?


File Info:

name: 99851044F7EB93942046.mlw
path: /opt/CAPEv2/storage/binaries/33fd70882c65c24b14137641bb0d25e34efd0f121c8c612d32902450257ba8d1
crc32: 44474D42
md5: 99851044f7eb93942046a18942f63a49
sha1: 51ecfe591c1be56cce233f90c45ad61baef96bbf
sha256: 33fd70882c65c24b14137641bb0d25e34efd0f121c8c612d32902450257ba8d1
sha512: 8370cb247fd59792f73d5519beb12bbb9eca470ef4056ec9d3528d0c201eaa7150e823f829b6aa8f95265a95e74ca371f54c9f4c71a81f76e1e81ae68e06b3e7
ssdeep: 384:/TXdnV22jTXdnV22Iky+yTTCZrBYFjZsnVGs9OileKK4sjiBCTqDVLJUsVh:/bdVhjbdVh4jKZruwnVhOdKmeAOxNUc
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T103030817AB0591FBEA44CAF219264069690B2D3010518ECF7DAE8E3E5D39357B8F032F
sha3_384: fd2c45aab9bfd5e2690d1d3741f4d40393c99b05574c722e0a0b182e39c275068d178e86759188d4f2254280b1aaf03d
ep_bytes: 68e0244000e8eeffffff000000000000
timestamp: 2007-08-17 12:43:04

Version Info:

0: [No Data]

Trojan.Heur.GM.0000600648 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.Heur.GM.0000600648
FireEyeGeneric.mg.99851044f7eb9394
McAfeeGenericRXOC-WQ!99851044F7EB
CylanceUnsafe
K7AntiVirusTrojan ( 00558d391 )
K7GWTrojan ( 00558d391 )
Cybereasonmalicious.4f7eb9
BaiduWin32.Trojan.VB.t
CyrenW32/Autorun.CN.gen!Eldorado
SymantecW32.Pajetbin
APEXMalicious
ClamAVWin.Worm.Vindor-9886047-0
NANO-AntivirusTrojan.Win32.AutoRun.bqzoew
AvastWin32:VB-FBX
SophosGeneric ML PUA (PUA)
DrWebWin32.HLLW.Autoruner.547
TrendMicroWORM_ATRUN9.TOMA
McAfee-GW-EditionBehavesLike.Win32.Generic.nh
IkarusTrojan.Autorun
GDataWin32.Worm.Pajetbin.A
JiangminWorm.AutoRun.awry
eGambitUnsafe.AI_Score_96%
AviraTR/Patched.Ren.Gen2
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
Acronissuspicious
BitDefenderThetaGen:NN.ZevbaF.34294.cuW@aCGxBQb
ALYacGen:Trojan.Heur.GM.0000600648
VBA32Worm.Autorun
MalwarebytesMalware.AI.2797890020
TrendMicro-HouseCallWORM_ATRUN9.TOMA
RisingWorm.VB!1.DA3E (CLASSIC)
YandexTrojan.Agent!LSJswJHYKPk
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/VB.FBX
AVGWin32:VB-FBX
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Heur.GM.0000600648?

Trojan.Heur.GM.0000600648 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment