Trojan

About “Trojan.Heur.MPacked.dmGdiqIX6ffbb” infection

Malware Removal

The Trojan.Heur.MPacked.dmGdiqIX6ffbb is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Heur.MPacked.dmGdiqIX6ffbb virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Heur.MPacked.dmGdiqIX6ffbb?


File Info:

crc32: 16E01958
md5: 7af334aa2bb70342a9682725128bb532
name: 7AF334AA2BB70342A9682725128BB532.mlw
sha1: 6ac9f3f5417b2112e0aa6da1922ee31ab6cca1bc
sha256: a48eb58a20fbd19c6526f29ace2aff440cd2176891a6537691398c3edba005ea
sha512: c46e1733f5314f806e55adce64f0f1a272fe7fe66189c573ea50beff210eed5677c186afe836877a2421b160131f789991bd5aa5b2f55758bc1d72e00b9fe6e6
ssdeep: 768:TU+nLtJ27c2FxhyoEOfbtWBgdDJQWvjrHK7wG+cI5MND4h:g+r2w2F7yoEOfBdN5jrq7T+f5MNm
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Heur.MPacked.dmGdiqIX6ffbb also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005257651 )
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop.32183
CynetMalicious (score: 100)
ALYacGen:Trojan.Heur.MPacked.dmGdiqIX6ffbb
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
K7GWTrojan ( 005257651 )
Cybereasonmalicious.a2bb70
CyrenW32/Agent.FI.gen!Eldorado
SymantecSMG.Heur!gen
APEXMalicious
AvastWin32:Hupigon-DCB [PUP]
KasperskyTrojan-Dropper.Win32.Agent.gato
BitDefenderGen:Trojan.Heur.MPacked.dmGdiqIX6ffbb
NANO-AntivirusTrojan.Win32.Crypter.wpmb
MicroWorld-eScanGen:Trojan.Heur.MPacked.dmGdiqIX6ffbb
Ad-AwareGen:Trojan.Heur.MPacked.dmGdiqIX6ffbb
SophosML/PE-A + Troj/Mdrop-CGE
ComodoTrojWare.Win32.Trojan.NSPM.~gen@20n73t
BitDefenderThetaAI:Packer.BD52584825
VIPREPacker.NSAnti.Gen (v)
TrendMicroTROJ_AGENT.SMX
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.pc
FireEyeGeneric.mg.7af334aa2bb70342
EmsisoftGen:Trojan.Heur.MPacked.dmGdiqIX6ffbb (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanDropper.Crypter.fu
WebrootW32.Backdoor.Hupigon
AviraTR/Crypt.XPACK.Gen
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.8120
MicrosoftTrojan:Win32/Wacatac.B!ml
GridinsoftMalware.Win32.Gen.bot!se22135
GDataGen:Trojan.Heur.MPacked.dmGdiqIX6ffbb
AhnLab-V3Trojan/Win32.Vilsel.C66210
Acronissuspicious
McAfeeGenericRXBO-ZM!F5C735624792
MAXmalware (ai score=86)
VBA32TrojanDropper.Agent
PandaGeneric Malware
TrendMicro-HouseCallTROJ_AGENT.SMX
RisingMalware.Heuristic!ET#96% (RDMK:cmRtazp3e/s+BevHrExI+aNWXC7y)
YandexPacked/NSPack
IkarusTrojan-Dropper.Agent
FortinetRiskware/Agent
AVGWin32:Hupigon-DCB [PUP]

How to remove Trojan.Heur.MPacked.dmGdiqIX6ffbb?

Trojan.Heur.MPacked.dmGdiqIX6ffbb removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment