Trojan

Trojan.MultiFC.S18870595 removal instruction

Malware Removal

The Trojan.MultiFC.S18870595 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.MultiFC.S18870595 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics
  • Network activity detected but not expressed in API logs
  • Binary compilation timestomping detected

How to determine Trojan.MultiFC.S18870595?


File Info:

name: A09164F91B2AA5F50743.mlw
path: /opt/CAPEv2/storage/binaries/df167f217b6ff837a5c2ac49f5f2a2f0b3522a7beda640366f42b7984f8c1866
crc32: 382B6088
md5: a09164f91b2aa5f50743ee156d8a4e12
sha1: 51a5c10933b83a588bf85d35db19ef989c770ef6
sha256: df167f217b6ff837a5c2ac49f5f2a2f0b3522a7beda640366f42b7984f8c1866
sha512: d230341f7e5641e0f20c79ea294c36bf30ae6f57f6f7dd8e0d590f99be09991a96d893b4a361baf6e6da0e0fab5c4ee8e5f53d25737c872ed93d4c523f8a4b57
ssdeep: 384:7w8LKdYUI/J1Ruj+uKhd/ZUHpgmrCtWQ3mVaQoHoDuVOvA:91XRKyhNmrCQ2gaQeoKT
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T150921A22B3E8D73ED4AB0B7849FD868186B0FD945D03DB5BA8DC109666F7B8405123B7
sha3_384: 7bb3ef1e4a2168cb48e59ceceee87afbcf394a7d7440cb6d8c94ffd3cb9ebaf33a0eb270df27a77cea5d65591dff6f1e
ep_bytes: ff250020400043003a005c0057006900
timestamp: 2043-09-26 05:19:37

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: Grigs.exe
LegalCopyright:
OriginalFilename: Grigs.exe
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

Trojan.MultiFC.S18870595 also known as:

LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKDZ.72585
FireEyeGeneric.mg.a09164f91b2aa5f5
CAT-QuickHealTrojan.MultiFC.S18870595
ALYacTrojan.GenericKDZ.72585
CylanceUnsafe
ZillyaDownloader.Small.Win32.137859
SangforTrojan.Win32.Wacatac.B
K7AntiVirusTrojan ( 0056879b1 )
AlibabaTrojanSpy:MSIL/Tnega.3aa4f909
K7GWTrojan ( 0056879b1 )
CrowdStrikewin/malicious_confidence_60% (D)
CyrenW32/MSIL_Kryptik.ECG.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/TrojanDownloader.Small.CIK
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan-Spy.MSIL.Stealer.gen
BitDefenderTrojan.GenericKDZ.72585
NANO-AntivirusTrojan.Win32.Stealer.ikjtni
AvastWin32:MalwareX-gen [Trj]
TencentMsil.Trojan-spy.Stealer.Lkwv
Ad-AwareTrojan.GenericKDZ.72585
EmsisoftTrojan.GenericKDZ.72585 (B)
ComodoMalware@#3httb4l03lwt9
DrWebTrojan.PWS.RedLine.16
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionDownloader-FBZC!A09164F91B2A
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataMSIL.Trojan-Downloader.Injector.PH
WebrootW32.Trojan.Gen
AviraTR/Dldr.Small.tcycb
eGambitUnsafe.AI_Score_99%
ZoneAlarmHEUR:Trojan-Spy.MSIL.Stealer.gen
MicrosoftTrojan:MSIL/Tnega.BK!MTB
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.C4294587
McAfeeDownloader-FBZC!A09164F91B2A
MAXmalware (ai score=83)
MalwarebytesTrojan.Crypt.MSIL.Generic
IkarusTrojan-Downloader.MSIL.Small
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Small.CIK!tr.dldr
BitDefenderThetaGen:NN.ZemsilF.34294.bm0@aqWFUjf
AVGWin32:MalwareX-gen [Trj]
Cybereasonmalicious.91b2aa
PandaTrj/GdSda.A
Qihoo-360Win32/TrojanDownloader.Small.HwMAtyMA

How to remove Trojan.MultiFC.S18870595?

Trojan.MultiFC.S18870595 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment