Trojan

Trojan.MFC.S22017085 malicious file

Malware Removal

The Trojan.MFC.S22017085 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.MFC.S22017085 virus can do?

  • Dynamic (imported) function loading detected
  • Unconventionial binary language: Polish
  • Unconventionial language used in binary resources: Polish
  • .NET file is packed/obfuscated with SmartAssembly
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan.MFC.S22017085?


File Info:

name: A4B22400491843DFAEEC.mlw
path: /opt/CAPEv2/storage/binaries/059d22d5b604638b1a3fa0b957686d2bd9958c55e599b407549c08004eedabed
crc32: 76F9E5F5
md5: a4b22400491843dfaeec6a6224dd3e9a
sha1: eb5af146e53bffa579ff002208e573f00cad743f
sha256: 059d22d5b604638b1a3fa0b957686d2bd9958c55e599b407549c08004eedabed
sha512: ea71bf30aef14aaf10304f2fcecdc667a7b17d16f5f6272408bdc6c94f5f5357409f356ffd675ae63dc2711975eadac9fdefcc5849da4c3c0060afd30549f40a
ssdeep: 49152:5AcLO/D0XI1p5rAqkmtsSYQNoyUdJuM+onFVQcbuxlp:5AcLrXwrRkmtsSYQNo/dJuMDnjal
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T147D58D260F852BBDF20D9DF9CD3563117CB04F150C6AE6DF5482FAD48432A767A2A09B
sha3_384: 9de21e9370c09841d53c6103dbbb892dffdff5e2000174422e5343e7ee2c11ece76b2621e5b16286684baa82c6609323
ep_bytes: 4d5a90000300000004000000ffff0000
timestamp: 2021-02-16 13:22:01

Version Info:

Translation: 0x0415 0x04b0
FileDescription: Mod manager for Baldur's Gate, Icewind Dale, Planescape Torment and EET
FileVersion: 0.9.2.0
InternalName:
LegalCopyright: Copyright (c) alienquake@hotmail.com
OriginalFilename: ProjectInfinity
ProductVersion: 0.9.2.0
Assembly Version: 5.0.36.0
CompanyName:
ProductName: ProjectInfinity
Comments:

Trojan.MFC.S22017085 also known as:

LionicTrojan.MSIL.Seraph.a!c
CAT-QuickHealTrojan.MFC.S22017085
McAfeeArtemis!A4B224004918
CylanceUnsafe
SangforTrojan.Win32.Wacatac.B
CyrenW64/Trojan.SHXR-4910
APEXMalicious
AvastWin64:Malware-gen
CynetMalicious (score: 100)
SophosMal/Generic-S
ZillyaDownloader.Seraph.Win32.734
McAfee-GW-EditionArtemis!Trojan
MicrosoftTrojan:Win32/Wacatac.B!ml
VBA32TrojanDownloader.MSIL.Seraph
FortinetW32/Seraph.SY!tr.dldr
AVGWin64:Malware-gen
Paloaltogeneric.ml
MaxSecureTrojan.Malware.100893440.susgen

How to remove Trojan.MFC.S22017085?

Trojan.MFC.S22017085 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment