Trojan

Should I remove “Trojan:MSIL/Heracles.GCD!MTB”?

Malware Removal

The Trojan:MSIL/Heracles.GCD!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:MSIL/Heracles.GCD!MTB virus can do?

  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine Trojan:MSIL/Heracles.GCD!MTB?


File Info:

name: 6F1DE6EF28153DEE04E4.mlw
path: /opt/CAPEv2/storage/binaries/1b384a31f8318f37f9fd145c6d24530347c8a6b32aa4ed00c3d3a5af9cb504e4
crc32: FF07E63F
md5: 6f1de6ef28153dee04e469efef24d008
sha1: 7e7c4e499cd20f2e86f34fb81262cf3324c2f86c
sha256: 1b384a31f8318f37f9fd145c6d24530347c8a6b32aa4ed00c3d3a5af9cb504e4
sha512: fb5a6843b2c28c98125c54a2007304f75a5f09a5b6cfdf4eed4ec5af6de45972bf6bc2e6a84c22fa46b36516e1b20f30cfc17185910a8aa869f125455ba12b9f
ssdeep: 768:VEHd23rgvy58+OM41v1bbpCb+BZhDVMdsSCIugm3Htp:VEHd23KPMb+BLVvX3r
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T18EF2E7297CE9812EF27F8FF83EE528959A75F3772609E90718840B4B4A43744DE1137A
sha3_384: 64aa74bf48f877efc3b1af11181b9d1121a9c2a849a611ed499e2b71dd15bb0f9f989de01e0143665c94322f800eecca
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-12-09 19:00:07

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: sensorprogall.exe
LegalCopyright:
OriginalFilename: sensorprogall.exe
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

Trojan:MSIL/Heracles.GCD!MTB also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.Win32.BitMin.4!c
MicroWorld-eScanGen:Variant.Tedy.264874
CAT-QuickHealTrojan.Generic.TRFH903
SkyhighBehavesLike.Win32.Generic.nm
McAfeeRDN/Generic Downloader.x
Cylanceunsafe
VIPREGen:Variant.Tedy.264874
SangforDownloader.Win32.Agent.Vgw7
K7AntiVirusRiskware ( 00584baa1 )
AlibabaTrojan:MSIL/Heracles.48bff4e5
K7GWRiskware ( 00584baa1 )
ArcabitTrojan.Tedy.D40AAA
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
APEXMalicious
KasperskyVHO:Trojan-Downloader.Win32.BitMin.gen
BitDefenderGen:Variant.Tedy.264874
AvastWin32:Malware-gen
TencentMalware.Win32.Gencirc.10bdc4c2
EmsisoftGen:Variant.Tedy.264874 (B)
F-SecureTrojan.TR/Redcap.vsmsw
ZillyaDownloader.BitMin.Win32.1
SophosGeneric Reputation PUA (PUA)
IkarusTrojan.MSIL.Agent
JiangminTrojanDownloader.Bitmin.tb
VaristW32/Trojan.GPA.gen!Eldorado
AviraTR/Redcap.vsmsw
Antiy-AVLTrojan[Downloader]/Win32.BitMin
MicrosoftTrojan:MSIL/Heracles.GCD!MTB
ZoneAlarmVHO:Trojan-Downloader.Win32.BitMin.gen
GDataGen:Variant.Tedy.264874
GoogleDetected
AhnLab-V3Trojan/Win.Generic.R546118
VBA32TScope.Trojan.MSIL
MalwarebytesGeneric.Malware.AI.DDS
RisingDownloader.BitMin!8.2F63 (CLOUD)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.AEF7!tr
AVGWin32:Malware-gen
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:MSIL/Heracles.GCD!MTB?

Trojan:MSIL/Heracles.GCD!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment