Trojan

Trojan.Reimage removal guide

Malware Removal

The Trojan.Reimage is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Reimage virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Reimage?


File Info:

crc32: 2E646157
md5: b962b919b4802645b801f8b5495b3200
name: B962B919B4802645B801F8B5495B3200.mlw
sha1: fea21b91fa5d0e5907390ae3f42f4c5d925e741e
sha256: d3396d04452769399504a1932d6bc1dcc7cd624628277ce550cd8a96bb5fa1a4
sha512: ed57c9cf468ab8496bc1f88c89c88b2eba924089f07b03ba78a6d856338629d79a4202024d541a3cd8ba28d38be4e0db75632e312eada04531689b0214c69a0c
ssdeep: 24576:PEbqWcQThz8zv9/8IQZbBwUtpqoQms8OkgVqiVL1VqxNwl:xyFgjyI/a0ENgVZL1Vqxi
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Reimage 2018
InternalName: Reimage Repair
FileVersion: 1.880
CompanyName: Reimage
LegalTrademarks: Reimage
ProductName: Reimage Repair
ProductVersion: 1.880
FileDescription: Reimage Package
OriginalFilename: ReimagePackage.exe
Translation: 0x0000 0x04b0

Trojan.Reimage also known as:

DrWebProgram.Unwanted.1470
CAT-QuickHealTrojan.Reimage
MalwarebytesPUP.Optional.Reimage
SUPERAntiSpywarePUP.ReImage/Variant
ComodoMalware@#3vg9gld9yny9c
MicrosoftPUA:Win32/Reimage
VBA32SigAdware.ReimageLimited
CylanceUnsafe
ESET-NOD32a variant of Win32/ReImageRepair.K potentially unwanted
eGambitPUP.Optional.Reimage

How to remove Trojan.Reimage?

Trojan.Reimage removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment