Trojan

Trojan.Scar.7014 malicious file

Malware Removal

The Trojan.Scar.7014 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Scar.7014 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Behavioural detection: Executable code extraction – unpacking
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Harvests cookies for information gathering

Related domains:

wpad.local-net

How to determine Trojan.Scar.7014?


File Info:

name: CBC41B5E8EF19A5385B2.mlw
path: /opt/CAPEv2/storage/binaries/1fc8d63a200665faf73c3e7ef3b7dcbc469fdb59f6a46799f5158f8aa4dcdaf3
crc32: 7D2FCEFB
md5: cbc41b5e8ef19a5385b208af25adaabc
sha1: 0d33d5d2b45b262aa78ea6b9367cc118a5462658
sha256: 1fc8d63a200665faf73c3e7ef3b7dcbc469fdb59f6a46799f5158f8aa4dcdaf3
sha512: aaff8e94c98e1b55e6ae79c06513fe562ec9c2484efcb61c8613855c5126fb787901ccd540d03f15c3312a50285cabaf20d14934be10bdc4d636cb0205b658fc
ssdeep: 24576:8i5WyAHIlqh2hvhuQZlNVHhZ4H9w0Z2CCwT:8i5QwuQZlNVB0w0HCwT
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12AA55B01FFC1C17AC57A113644A7875A7272EE556B258BC3B3943A2E7D303E1AC362DA
sha3_384: c44fe9047f373973bbcb1237b8448dcd9c1ed16d72326ac0e0a58770409f3f8e5eb79c1eb2220e23bf11ed4100e399e7
ep_bytes: e822f70000e916feffff558bec83ec18
timestamp: 2008-01-04 16:37:54

Version Info:

CompanyName: LiveNote Inc.
FileDescription: e-transcript Viewer
FileVersion: 8.3.0.1322
InternalName: ENVELOPE
LegalCopyright: Copyright © 1996-2007, LiveNote Inc.
OriginalFilename: ENVELOPE.EXE
ProductName: e-transcript
ProductVersion: 8.3.0.517
Translation: 0x0409 0x04e4

Trojan.Scar.7014 also known as:

CAT-QuickHealTrojan.Scar.7014
CylanceUnsafe
ZillyaTrojan.Scar.Win32.85254
APEXMalicious
ClamAVWin.Malware.Scar-9879453-0
NANO-AntivirusTrojan.Win32.Scar.cxfnil
TencentMalware.Win32.Gencirc.10b13a3a
DrWebTrojan.MulDrop5.7687
SophosML/PE-A
JiangminTrojan.Generic.eevon
AviraHEUR/AGEN.1105208
Antiy-AVLTrojan/Generic.ASMalwS.4E415B
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
VBA32Trojan.Scar
YandexTrojan.Scar!UJTCZL8x5xc

How to remove Trojan.Scar.7014?

Trojan.Scar.7014 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment