Trojan

About “Trojan.Heur.SFC.jmGfa0afJXjcb” infection

Malware Removal

The Trojan.Heur.SFC.jmGfa0afJXjcb is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Heur.SFC.jmGfa0afJXjcb virus can do?

  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs
  • Collects information to fingerprint the system
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

How to determine Trojan.Heur.SFC.jmGfa0afJXjcb?


File Info:

crc32: 051E8FA1
md5: e4cf46f2544bce8cd226da68eee19c33
name: E4CF46F2544BCE8CD226DA68EEE19C33.mlw
sha1: 81a779b262e142c15f6761f789d838565dcb57e2
sha256: 3cd78093a9e8e0d3440ca254a2a3d64bd0298bd86e84c1b66895deec59ab9704
sha512: 6efd26dddcec7f30636c66efad594120bbcf3a9b0bff292c3570e3f989cb9ce7872f0ca3dc244218e43c510aa8f0154bda1a6dec752fdad993bde37543edf0c4
ssdeep: 3072:qLcpPBxCg3VuwTVvQl0eC3e9V0LMoPEX3SM6/GOAosgwbECvjNRd2b:q4ZSyQlku9M+X3SBxCHd2b
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Trojan.Heur.SFC.jmGfa0afJXjcb also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0055e39b1 )
DrWebTrojan.KillProc.22494
CynetMalicious (score: 100)
ALYacGen:Trojan.Heur.SFC.jmGfa0afJXjcb
CylanceUnsafe
ZillyaTrojan.Vilsel.Win32.30888
K7GWTrojan ( 0055e39b1 )
Cybereasonmalicious.2544bc
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/LockScreen.ARH
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan.Win32.Vilsel.bqje
BitDefenderGen:Trojan.Heur.SFC.jmGfa0afJXjcb
NANO-AntivirusTrojan.Win32.Vilsel.bkvivt
MicroWorld-eScanGen:Trojan.Heur.SFC.jmGfa0afJXjcb
TencentWin32.Trojan.Vilsel.diqx
Ad-AwareGen:Trojan.Heur.SFC.jmGfa0afJXjcb
SophosMal/Generic-R + Mal/FakeAV-L
ComodoMalware@#2gc03kp1iayed
BitDefenderThetaAI:Packer.2928AD2F21
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Trojan.cc
FireEyeGen:Trojan.Heur.SFC.jmGfa0afJXjcb
EmsisoftGen:Trojan.Heur.SFC.jmGfa0afJXjcb (B)
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.872613
KingsoftWin32.Troj.Vilsel.bq.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmTrojan.Win32.Vilsel.bqje
GDataGen:Trojan.Heur.SFC.jmGfa0afJXjcb
McAfeeArtemis!E4CF46F2544B
MAXmalware (ai score=88)
VBA32Trojan-Ransom.Winlock.gen
PandaTrj/CI.A
YandexTrojan.Vilsel!A1Qpuk3PcAs
IkarusTrojan.Win32.Vilsel
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/LockScreen.APR!tr
AVGWin32:Malware-gen
Qihoo-360Win32/Trojan.d89

How to remove Trojan.Heur.SFC.jmGfa0afJXjcb?

Trojan.Heur.SFC.jmGfa0afJXjcb removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment