Trojan

What is “Trojan.Heur3.LPT.Imqaa4IlBupGb”?

Malware Removal

The Trojan.Heur3.LPT.Imqaa4IlBupGb is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Heur3.LPT.Imqaa4IlBupGb virus can do?

  • Creates RWX memory
  • Starts servers listening on 0.0.0.0:2106
  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • Unconventionial language used in binary resources: Portuguese (Brazilian)
  • The binary likely contains encrypted or compressed data.

Related domains:

pool.ntp.org
naldinho.wallacecarvalho.com.br

How to determine Trojan.Heur3.LPT.Imqaa4IlBupGb?


File Info:

crc32: 1F86FEE3
md5: 86aac06ec715c02cb0840fb3a5ef7fea
name: 86AAC06EC715C02CB0840FB3A5EF7FEA.mlw
sha1: 3a006b555fdf29aff9f449a6d752a18b7175ffcf
sha256: 738b3cf309c94fdd7f7517c281d0ac0a2f6d83991aa4d0e2690c4b06ce2d42f4
sha512: ada1ba08b1fc9c02af707090709b4e8f85b4f9fe628f9bee95dedc5102af53ac8691fc316f1dabc2ede27b798c6060d35f5eb36bfc9db9ee4c7458598565c7b4
ssdeep: 12288:QCZ9OTS38q3ASE0cJhgj4N7i4ZH/uTv4T8iIUy0EWdNpj:LxFe0e/fQ/nUjdN
type: MS-DOS executable, MZ for MS-DOS

Version Info:

0: [No Data]

Trojan.Heur3.LPT.Imqaa4IlBupGb also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
ALYacGen:Trojan.Heur3.LPT.Imqaa4IlBupGb
CylanceUnsafe
SangforTrojan.Win32.Save.a
AlibabaRansom:Win32/Foreign.ec25b34d
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Trojan.Heur3.LPT.Imqaa4IlBupGb
MicroWorld-eScanGen:Trojan.Heur3.LPT.Imqaa4IlBupGb
Ad-AwareGen:Trojan.Heur3.LPT.Imqaa4IlBupGb
SophosGeneric ML PUA (PUA)
ComodoMalware@#d19je6583b8l
BitDefenderThetaAI:Packer.BA44E30521
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.hc
FireEyeGeneric.mg.86aac06ec715c02c
EmsisoftGen:Trojan.Heur3.LPT.Imqaa4IlBupGb (B)
SentinelOneStatic AI – Suspicious PE
eGambitUnsafe.AI_Score_95%
MicrosoftTrojan:Win32/Fareit!ml
GDataGen:Trojan.Heur3.LPT.Imqaa4IlBupGb
McAfeeArtemis!86AAC06EC715
MAXmalware (ai score=98)
IkarusTrojan-Ransom.Foreign
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Malware-gen
Qihoo-360Win32/Trojan.Generic.HxIBEpsA

How to remove Trojan.Heur3.LPT.Imqaa4IlBupGb?

Trojan.Heur3.LPT.Imqaa4IlBupGb removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment