Trojan

How to remove “Trojan.Heur2.GZ.gu3bb8unr8hi”?

Malware Removal

The Trojan.Heur2.GZ.gu3bb8unr8hi is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Heur2.GZ.gu3bb8unr8hi virus can do?

  • Executable code extraction
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Heur2.GZ.gu3bb8unr8hi?


File Info:

crc32: C20CAD51
md5: 9d37f61beea7ac3fd0339f5d1615835d
name: 9D37F61BEEA7AC3FD0339F5D1615835D.mlw
sha1: cd2eccba25e14ab153001e2337af45144f2a2ca5
sha256: cb123d2da6a6449f499395d411f7b6b572d8f97a61209e9168cb526afa5a6e54
sha512: 1976e80d9f1ae3d761da92f26787e878fabb8b498060f61a065af0ce6dd5f6189a7356c15cfbcb200186e16be5e38095c8b9b428cf802943a4b52983eff1e6c3
ssdeep: 384:XbEx5E+4TziE2WsNLXhr6+N9PfBHyndTQGMILHIX:XYB4CVpsOxCMaIX
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: mowax [SHOCK]
InternalName: mx-cftp
FileVersion: 1.00
CompanyName: mowax [SHOCK]
LegalTrademarks: mowax [SHOCK]
ProductName: CuteFtp 4.2.xx+ KeyGen
ProductVersion: 1.00
FileDescription: CuteFtp 4.0.18+ KeyGen
OriginalFilename: mx-cftp.exe

Trojan.Heur2.GZ.gu3bb8unr8hi also known as:

BkavW32.AIDetect.malware1
ClamAVWin.Trojan.3861152-1
CAT-QuickHealTrojan.VBCryptVMF.S2722173
ALYacGen:Trojan.Heur2.GZ.gu3bb8unr8hi
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
BitDefenderGen:Trojan.Heur2.GZ.gu3bb8unr8hi
Cybereasonmalicious.beea7a
SymantecML.Attribute.HighConfidence
APEXMalicious
CynetMalicious (score: 100)
KasperskyUDS:DangerousObject.Multi.Generic
MicroWorld-eScanGen:Trojan.Heur2.GZ.gu3bb8unr8hi
Ad-AwareGen:Trojan.Heur2.GZ.gu3bb8unr8hi
SophosMal/Generic-S
BitDefenderThetaAI:Packer.46362D0720
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Trojan.nz
FireEyeGeneric.mg.9d37f61beea7ac3f
EmsisoftGen:Trojan.Heur2.GZ.gu3bb8unr8hi (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.Gen
eGambitUnsafe.AI_Score_100%
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Heur2.GZ.gu3bb8unr8hi
GDataGen:Trojan.Heur2.GZ.gu3bb8unr8hi
McAfeeArtemis!9D37F61BEEA7
MAXmalware (ai score=89)
VBA32TScope.Trojan.VB
YandexTrojan.Agent!cWpvhk9PRuM
IkarusGen.Trojan
FortinetW32/Generik.MTLSMCZ!tr
Paloaltogeneric.ml

How to remove Trojan.Heur2.GZ.gu3bb8unr8hi?

Trojan.Heur2.GZ.gu3bb8unr8hi removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment