Trojan

TrojanDownloader:Win32/Beebone.JI malicious file

Malware Removal

The TrojanDownloader:Win32/Beebone.JI is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:Win32/Beebone.JI virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine TrojanDownloader:Win32/Beebone.JI?


File Info:

name: 9DB8100885A41F3DAC49.mlw
path: /opt/CAPEv2/storage/binaries/6afe929c70649e4aa64a1883445b2122aaded7d1248bf3dafd5c44aeeda22873
crc32: 38B61C72
md5: 9db8100885a41f3dac490dc0db4dd520
sha1: ca6318cc0a478393070dc2d839df2c58ca188810
sha256: 6afe929c70649e4aa64a1883445b2122aaded7d1248bf3dafd5c44aeeda22873
sha512: 99a59f24e7dba2fbbbb39530581e0c10d8f6cd34f9ee60e7a841baa6d40a63d32e24d550501f5fb20f2861408c0aafb58ac1a05695c9aaf9f29d93691a3fc5a9
ssdeep: 768:sLLJmqBTClcALYUP1Dpx0pcTV6oIqCJtw2jOals:QLYfcALDPdp6CCJtLs
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T168738313F5784DE6EC4E457224CF86B506A7A86C2A471F17B305227E28F3FD02D6B682
sha3_384: 2f91dbd480540b0848c9dc3487e98d217fbbaeb99d3f0dbb527980f571b084f2e56bd136c4ffe9af825c76fb755ed4e0
ep_bytes: 68dc1b4000e8eeffffff000000000000
timestamp: 1970-01-01 00:00:00

Version Info:

CompanyName: hpxqiunuan
LegalTrademarks: azilofo
ProductName: kdtjcurlo
FileVersion: 5.02
ProductVersion: 5.02
InternalName: clnfxr
OriginalFilename: clnfxr.exe

TrojanDownloader:Win32/Beebone.JI also known as:

BkavW32.AIDetectMalware
AVGWin32:VB-AGIX [Trj]
tehtrisGeneric.Malware
DrWebTrojan.DownLoader9.58004
MicroWorld-eScanGen:Variant.Symmi.23682
FireEyeGeneric.mg.9db8100885a41f3d
CAT-QuickHealTrojan.Beebone.D
SkyhighW32/Autorun.worm.ta!gen
McAfeeW32/Autorun.worm.ta!gen
MalwarebytesMalware.AI.1483115438
ZillyaWorm.WBNA.Win32.1879806
SangforSuspicious.Win32.Save.vb
K7AntiVirusEmailWorm ( 0040f60d1 )
AlibabaWorm:Win32/VBObfus.4c2daa8a
K7GWEmailWorm ( 0040f60d1 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZevbaF.36802.em0@aSc4tMmi
VirITTrojan.Win32.Generic.DZV
SymantecW32.Changeup!gen44
ESET-NOD32a variant of Win32/VBObfus.PJ
CynetMalicious (score: 100)
APEXMalicious
AvastWin32:VB-AGIX [Trj]
KasperskyWorm.Win32.WBNA.ipa
BitDefenderGen:Variant.Symmi.23682
NANO-AntivirusTrojan.Win32.Dorifel.cqkxsl
RisingWorm.WBNA!8.321 (TFE:3:z8lBxO3vYsR)
EmsisoftGen:Variant.Symmi.23682 (B)
F-SecureTrojan.TR/Dropper.VB.Gen
VIPREGen:Variant.Symmi.23682
TrendMicroTROJ_GEN.R002C0CAP24
Trapminemalicious.high.ml.score
SophosMal/VBCheMan-F
SentinelOneStatic AI – Malicious PE
JiangminTrojanDropper.Dorifel.ldi
VaristW32/Vobfus.JG.gen!Eldorado
AviraTR/Dropper.VB.Gen
MAXmalware (ai score=100)
Antiy-AVLWorm/Win32.WBNA.gen
Kingsoftmalware.kb.a.999
MicrosoftTrojanDownloader:Win32/Beebone.JI
XcitiumTrojWare.Win32.VBObfus.PJ@4y8tak
ArcabitTrojan.Symmi.D5C82
ZoneAlarmWorm.Win32.WBNA.ipa
GDataGen:Variant.Symmi.23682
GoogleDetected
AhnLab-V3Trojan/Win32.Dorifel.R68844
VBA32Worm.WBNA
ALYacGen:Variant.Symmi.23682
Cylanceunsafe
PandaW32/Vobfus.GEW.worm
TrendMicro-HouseCallTROJ_GEN.R002C0CAP24
TencentMalware.Win32.Gencirc.10b3b6b8
YandexWorm.WBNA!tKjIZefRiho
IkarusTrojan-Dropper.Win32.Dorifel
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Jorik_Vobfus.GUVG!tr
DeepInstinctMALICIOUS
alibabacloudWorm:Win/VBObfus.PJ

How to remove TrojanDownloader:Win32/Beebone.JI?

TrojanDownloader:Win32/Beebone.JI removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment