Trojan

Trojan.Heur.VP.bqKfa8d4zLci removal tips

Malware Removal

The Trojan.Heur.VP.bqKfa8d4zLci is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Heur.VP.bqKfa8d4zLci virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Trojan.Heur.VP.bqKfa8d4zLci?


File Info:

name: 1666E60AD77AB5937D04.mlw
path: /opt/CAPEv2/storage/binaries/4010c9a037a78eb7b76a4d891423590a3eee3be22a42e996587c6ce944448868
crc32: B4245983
md5: 1666e60ad77ab5937d046417a696353e
sha1: 78d4b8003f8859be6667d73e5cfd68b3855b977a
sha256: 4010c9a037a78eb7b76a4d891423590a3eee3be22a42e996587c6ce944448868
sha512: 70fc3d4238fa42abb5c3f8a7d86b70b348cad6ec3f8a8ed18b77c125e029f78623f0ee1447404abe6a6865e4840b8df4a5839ead12649a6f6da451237665cdad
ssdeep: 384:JzgcmU5+i7oiCY1gYYvGFBQLfIG3Ut9EDSuNpoz3yXOW35I+lZd3ceGPlxZ5B3:JzKjgCYiqPQLgGktepG3fc5nLdS1
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18FC2E152B799702AE3B39EB14797EF15E8083C38CF741B892A95331F1DF1326BA19512
sha3_384: 284937973998abf7f55664aae865055067776855147e481d550574a7f747d12d57c0a57105c9792172249c33fe7f589d
ep_bytes: 60e80000000083cdff31db5e8dbefa7f
timestamp: 2003-06-23 08:28:42

Version Info:

Translation: 0x0409 0x04b0
CompanyName: Seek n Destroy
ProductName: Project1
FileVersion: 1.00
ProductVersion: 1.00
InternalName: KeyGen
OriginalFilename: KeyGen.exe

Trojan.Heur.VP.bqKfa8d4zLci also known as:

LionicTrojan.Multi.Generic.4!c
MicroWorld-eScanGen:Trojan.Heur.VP.bqKfa8d4zLci
FireEyeGeneric.mg.1666e60ad77ab593
ALYacGen:Trojan.Heur.VP.bqKfa8d4zLci
CylanceUnsafe
SangforSuspicious.Win32.Save.a
AlibabaTrojan:Win32/Tiggre.0b1d55f1
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaAI:Packer.5B97F37A1F
CyrenW32/Risk.OQXR-0309
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTROJ_GEN.R011C0GIS21
Paloaltogeneric.ml
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Trojan.Heur.VP.bqKfa8d4zLci
AvastWin32:Trojan-gen
TencentWin32.Trojan.Crypt.Dxna
Ad-AwareGen:Trojan.Heur.VP.bqKfa8d4zLci
SophosCrackTool (PUA)
ComodoMalware@#2y7017s0xoikp
VIPRETrojan.Win32.Generic.pak!cobra
TrendMicroTROJ_GEN.R011C0GIS21
McAfee-GW-EditionBehavesLike.Win32.IStartSurf.mc
EmsisoftGen:Trojan.Heur.VP.bqKfa8d4zLci (B)
IkarusTrojan.Crypt
GDataGen:Trojan.Heur.VP.bqKfa8d4zLci
AviraTR/Crypt.CFI.Gen
Antiy-AVLTrojan/Generic.ASMalwS.1D6AAC0
ArcabitTrojan.Heur.VP.bqKfa8d4zLci
ZoneAlarmUDS:DangerousObject.Multi.Generic
MicrosoftTrojan:Win32/Tiggre!rfn
CynetMalicious (score: 99)
McAfeeArtemis!1666E60AD77A
MAXmalware (ai score=83)
VBA32Trojan.Wacatac
MalwarebytesMalware.Heuristic.1003
APEXMalicious
RisingTrojan.Tiggre!8.ED98 (CLOUD)
YandexTrojan.CFI!t6bLGzdyMGg
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Trojan-gen
Cybereasonmalicious.ad77ab
PandaTrj/CI.A

How to remove Trojan.Heur.VP.bqKfa8d4zLci?

Trojan.Heur.VP.bqKfa8d4zLci removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment