Trojan

Trojan.Heur.SFB.LquaamCbl9eib (file analysis)

Malware Removal

The Trojan.Heur.SFB.LquaamCbl9eib is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Heur.SFB.LquaamCbl9eib virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Executable file is packed/obfuscated with MPRESS
  • Authenticode signature is invalid

How to determine Trojan.Heur.SFB.LquaamCbl9eib?


File Info:

name: 7F26A51DB1442584255C.mlw
path: /opt/CAPEv2/storage/binaries/93656e1d0b2cdca9778a65b0d3bdd3cc3e08fe5b156ef20a51ee3a9df4bca79e
crc32: 7A16819E
md5: 7f26a51db1442584255c78a128897f20
sha1: 0bab3e03eb68bdb54b03eeef9170cda69d981921
sha256: 93656e1d0b2cdca9778a65b0d3bdd3cc3e08fe5b156ef20a51ee3a9df4bca79e
sha512: eceb4149a936f016d304002261c8666f213e2155ef29ee6e66e0b2dd14367763a2de6e420426eb7a91715bae0c0c9af1c959fd2475305cef916c60867f237b0f
ssdeep: 12288:lk2X0wyoUDKMs2Z9761sjm0ni+7EAb2jXo:zXSpGMsod61sjmCfqbo
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A0D41284745CD486E96B34F07DAEA9B03C953FCC5054075939BAB30E8972257ECABD0E
sha3_384: 7f464c178024fd8b3425d61824ce133d4dc785fe4c1cee9efca3a5db8d3062862132b5a16acc9cabec3f32e7c1e11346
ep_bytes: eb168b1500a05600ff328f0500a05600
timestamp: 2012-05-09 02:49:20

Version Info:

Translation: 0x0409 0x04b0
CompanyName: stc
ProductName: man
FileVersion: 5555.45.5555
ProductVersion: 5555.45.5555
InternalName: Project1
OriginalFilename: Project1.exe

Trojan.Heur.SFB.LquaamCbl9eib also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.PEF13C.4!c
tehtrisGeneric.Malware
MicroWorld-eScanGen:Trojan.Heur.SFB.LquaamCbl9eib
ClamAVWin.Dropper.Bifrost-7946151-0
FireEyeGeneric.mg.7f26a51db1442584
McAfeeArtemis!7F26A51DB144
CylanceUnsafe
VIPREGen:Trojan.Heur.SFB.LquaamCbl9eib
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0052964f1 )
K7GWTrojan ( 0052964f1 )
Cybereasonmalicious.db1442
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Packed.Molebox.K suspicious
ZonerProbably Heur.ExeHeaderL
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan.Win32.VBKrypt.vioy
BitDefenderGen:Trojan.Heur.SFB.LquaamCbl9eib
NANO-AntivirusTrojan.Win32.VBKrypt.tawgk
SUPERAntiSpywareTrojan.Agent/Gen-Injector
AvastWin32:Evo-gen [Trj]
TencentWin32.Trojan.Vbkrypt.Dkjl
Ad-AwareGen:Trojan.Heur.SFB.LquaamCbl9eib
EmsisoftGen:Trojan.Heur.SFB.LquaamCbl9eib (B)
ComodoMalware@#28zfdjd4qp2y3
ZillyaTrojan.PEF13C.Win32.1018
McAfee-GW-EditionBehavesLike.Win32.Generic.hc
Trapminemalicious.high.ml.score
SophosML/PE-A
SentinelOneStatic AI – Suspicious PE
JiangminTrojan/VBKrypt.bzqr
AviraHEUR/AGEN.1230660
MAXmalware (ai score=81)
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmPacked.Multi.MultiPacked.gen
GDataGen:Trojan.Heur.SFB.LquaamCbl9eib
GoogleDetected
AhnLab-V3Trojan/Win32.VBKrypt.C111456
BitDefenderThetaAI:Packer.29B8C2F721
ALYacGen:Trojan.Heur.SFB.LquaamCbl9eib
VBA32TScope.Trojan.VB
MalwarebytesMalware.Heuristic.1003
IkarusTrojan.Win32.Jorik
FortinetW32/VBKrypt.BBBQ!tr
AVGWin32:Evo-gen [Trj]
PandaTrj/OCJ.E
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Trojan.Heur.SFB.LquaamCbl9eib?

Trojan.Heur.SFB.LquaamCbl9eib removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment