Trojan

Should I remove “Trojan.Heur3.LPT.NmKfaOCuhLaib”?

Malware Removal

The Trojan.Heur3.LPT.NmKfaOCuhLaib is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Heur3.LPT.NmKfaOCuhLaib virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.Heur3.LPT.NmKfaOCuhLaib?


File Info:

name: 323805A18405C6A1F0CE.mlw
path: /opt/CAPEv2/storage/binaries/df3cb848b87d1d0a2ba3faaef5bfe96b5bf8c9699626080a03c8f1c370f7538b
crc32: BEB43237
md5: 323805a18405c6a1f0ce7d8e1d1205f2
sha1: 522a180030c1288b3d31451c871fccc07b999f6d
sha256: df3cb848b87d1d0a2ba3faaef5bfe96b5bf8c9699626080a03c8f1c370f7538b
sha512: 684ccfd7819c333cae58d664af331ad50fbd3424f0bdcc7ddbdfe96c52b46a428cf43f07c379295620a272529641dafb806a02313b9d0473f9cc5def6b00edab
ssdeep: 12288:mJfJsQVJo3Kowvf6FXZmD3/mc4EyTI527cKiGlVxQEb31BTqwyOAimnE:IOVwn6FXQD3YM65lbZb7AimE
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1DCD423E7C97BDBB3C0C778334424F8099AACDA996F9E46B7724A908732E10354F15276
sha3_384: ff2e036284dda744e003add598e597afde4c4cf3cb98cfd6c2733be9a9722e70704bc9dc7c56b8f8a35442bd6eebc0eb
ep_bytes: 60be009057008dbe0080e8ff8d87241c
timestamp: 2023-11-09 11:33:00

Version Info:

FileDescription: Project1
FileVersion: 1.0.0.0
ProductName: Project1
ProductVersion: 1.0.0.0
ProgramID: com.embarcadero.Project1
Translation: 0x0409 0x04e4

Trojan.Heur3.LPT.NmKfaOCuhLaib also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanGen:Trojan.Heur3.LPT.NmKfaOCuhLaib
FireEyeGen:Trojan.Heur3.LPT.NmKfaOCuhLaib
SkyhighBehavesLike.Win32.Generic.jc
ALYacGen:Trojan.Heur3.LPT.NmKfaOCuhLaib
MalwarebytesMachineLearning/Anomalous.94%
VIPREGen:Trojan.Heur3.LPT.NmKfaOCuhLaib
SangforTrojan.Win32.Agent.V4xo
BitDefenderGen:Trojan.Heur3.LPT.NmKfaOCuhLaib
BitDefenderThetaAI:Packer.8E0C2C8221
APEXMalicious
RisingTrojan.Generic@AI.100 (RDML:pSVS/JNNnrOM3X6rPvGwOw)
SophosMal/Generic-S
F-SecureTrojan.TR/Crypt.ULPM.Gen
Trapminesuspicious.low.ml.score
EmsisoftGen:Trojan.Heur3.LPT.NmKfaOCuhLaib (B)
AviraTR/Crypt.ULPM.Gen
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Heur3.LPT.NmKfaOCuhLaib
GDataGen:Trojan.Heur3.LPT.NmKfaOCuhLaib
CynetMalicious (score: 100)
McAfeeArtemis!323805A18405
MAXmalware (ai score=83)
DeepInstinctMALICIOUS
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002H09K923
SentinelOneStatic AI – Suspicious PE

How to remove Trojan.Heur3.LPT.NmKfaOCuhLaib?

Trojan.Heur3.LPT.NmKfaOCuhLaib removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment