Trojan

Should I remove “Trojan.Heur.JP.dmGfa4R7iKkc”?

Malware Removal

The Trojan.Heur.JP.dmGfa4R7iKkc is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Heur.JP.dmGfa4R7iKkc virus can do?

  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Behavior consistent with a dropper attempting to download the next stage.
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
giroboard.top
caribz.club

How to determine Trojan.Heur.JP.dmGfa4R7iKkc?


File Info:

crc32: BA6D6994
md5: 3ad92c8b5400a37dcfca8e97ab3ddb94
name: 3AD92C8B5400A37DCFCA8E97AB3DDB94.mlw
sha1: bd85edb0416f778e51b86209218f50789dc569ba
sha256: 1a664fa07d8381d26a071ebab6a55e1862b5da90d07ec56a54b370c2cab836a1
sha512: 8b06306e255d6e50ae5347da9e4bce49a2a39fc73023d1f80119130883114446557950d233dee04ed35cf0e3ab23848c8e6dbfbe58babfb638649c55ab2948bc
ssdeep: 3072:erV1c41UtsuYeZWo/XBwXfYKYGl1h63UV6TbcpvrbgBOeM1+:eo4U2SWofBwrYGR6kV4c+OeMU
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

ProductName: qgfghddfgdfgqdiZerro ivikas NSIS 3 easy installer
Translation: 0x0409 0x04b0

Trojan.Heur.JP.dmGfa4R7iKkc also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan-Downloader ( 00520c311 )
Elasticmalicious (high confidence)
DrWebTrojan.InstallMonster.2496
MicroWorld-eScanGen:Trojan.Heur.JP.dmGfa4R7iKkc
ALYacGen:Trojan.Heur.JP.dmGfa4R7iKkc
CylanceUnsafe
ZillyaAdware.GenericKD.Win32.7906
SangforTrojan.Win32.Tovkater.IC
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojanDownloader:Win32/Tovkater.0ab73d7c
K7GWTrojan-Downloader ( 00520c311 )
Cybereasonmalicious.b5400a
CyrenW32/Tovkater.O.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/TrojanDownloader.Tovkater.IC
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Malware.Tovkater-6956309-0
KasperskyTrojan-Downloader.Win32.Tovkater.blbg
BitDefenderGen:Trojan.Heur.JP.dmGfa4R7iKkc
NANO-AntivirusTrojan.Win32.InstallMonster.fqwfvp
ViRobotTrojan.Win32.Z.Tovkater.133121
TencentWin32.Trojan-downloader.Tovkater.Lnor
SophosMal/Generic-S
ComodoTrojWare.Win32.TrojanDownloader.Tovkater.HC@7vrbxu
BitDefenderThetaAI:Packer.3621AF451F
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R011C0GE921
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
FireEyeGeneric.mg.3ad92c8b5400a37d
EmsisoftGen:Trojan.Heur.JP.dmGfa4R7iKkc (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1117983
eGambitUnsafe.AI_Score_94%
Antiy-AVLTrojan/Generic.ASMalwS.2BB05E3
MicrosoftTrojan:Win32/Occamy.C1A
ZoneAlarmTrojan-Downloader.Win32.Tovkater.blbg
GDataGen:Trojan.Heur.JP.dmGfa4R7iKkc
AhnLab-V3PUP/Win32.InstMonster.R215721
Acronissuspicious
McAfeeArtemis!3AD92C8B5400
MAXmalware (ai score=96)
VBA32SScope.Adware.Linkury
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R011C0GE921
RisingDownloader.Tovkater/NSIS!1.AF36 (CLASSIC)
YandexTrojan.GenAsa!qhYl4EpQjKc
FortinetW32/Tovkater.IA!tr.dldr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.Heur.JP.dmGfa4R7iKkc?

Trojan.Heur.JP.dmGfa4R7iKkc removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment