Trojan

How to remove “Trojan.Heur2.VP2.di1aaGXjHdki”?

Malware Removal

The Trojan.Heur2.VP2.di1aaGXjHdki is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Heur2.VP2.di1aaGXjHdki virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.Heur2.VP2.di1aaGXjHdki?


File Info:

crc32: 7347081A
md5: 0a79a7f92ae35002b829cb21e8af468a
name: 0A79A7F92AE35002B829CB21E8AF468A.mlw
sha1: 0a9032a8955b555d567f701e5de091f08def1a94
sha256: eabfb040d45ffb1b17a132d5fe483ab2dbbabeac7e887f38b36aa24a78ea436c
sha512: b4f8c94cefcaa82f38a7bb5b782c5a2cfd1d47a6fd8f943c31cebf8c50c9e6f02eb0c5efe9ee05ac181b589a61b9f1fad10c5d6c86b2d1a3112eab55d2a42c2e
ssdeep: 1536:9Ywpa9x8mtHwZ+WEoOXt+VXHX6XdWOj8sFcc:9YwpQlHwo6O9+VXKgOj8sFcc
type: PE32 executable (GUI) Intel 80386, for MS Windows, PECompact2 compressed

Version Info:

Translation: 0x0409 0x04b0
ProductVersion: 1.00
InternalName: hd9h219ch19f1c9h19c
FileVersion: 1.00
OriginalFilename: hd9h219ch19f1c9h19c.exe
ProductName: hd9h219ch19f1c9h19c

Trojan.Heur2.VP2.di1aaGXjHdki also known as:

BkavW32.AIDetect.malware1
LionicWorm.Win32.AutoRun.o!c
Elasticmalicious (high confidence)
DrWebBackDoor.Cybergate.1
ALYacGen:Trojan.Heur2.VP2.di1aaGXjHdki
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
K7GWNetWorm ( 700000151 )
K7AntiVirusNetWorm ( 700000151 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.EWB
APEXMalicious
AvastFileRepMalware
CynetMalicious (score: 100)
KasperskyBackdoor.Win32.Sdbot.afem
BitDefenderGen:Trojan.Heur2.VP2.di1aaGXjHdki
NANO-AntivirusTrojan.Win32.Sdbot.fijtli
MicroWorld-eScanGen:Trojan.Heur2.VP2.di1aaGXjHdki
TencentWin32.Trojan.Generic.Glt
Ad-AwareGen:Trojan.Heur2.VP2.di1aaGXjHdki
SophosMal/Generic-G
ComodoTrojWare.Win32.Trojan.XPACK.Gen@2ho5ur
BitDefenderThetaAI:Packer.3264E4CB21
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.qc
FireEyeGeneric.mg.0a79a7f92ae35002
EmsisoftGen:Trojan.Heur2.VP2.di1aaGXjHdki (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Malware.Gen
AviraTR/Crypt.PEPM.Gen
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Heur2.VP2.di1aaGXjHdki
GDataGen:Trojan.Heur2.VP2.di1aaGXjHdki
AhnLab-V3Trojan/Win32.Gen
McAfeeArtemis!0A79A7F92AE3
MAXmalware (ai score=82)
VBA32BScope.Backdoor.Cybergate
PandaGeneric Malware
YandexTrojan.Injector!dFkIQlAXZnY
IkarusVirus.Win32.VBInject
FortinetW32/Magania.IDPJ!tr
AVGFileRepMalware

How to remove Trojan.Heur2.VP2.di1aaGXjHdki?

Trojan.Heur2.VP2.di1aaGXjHdki removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment