Trojan

Should I remove “Trojan:MSIL/Lokibot.CCCD!MTB”?

Malware Removal

The Trojan:MSIL/Lokibot.CCCD!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:MSIL/Lokibot.CCCD!MTB virus can do?

  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan:MSIL/Lokibot.CCCD!MTB?


File Info:

name: 0A8F8A168999AC154933.mlw
path: /opt/CAPEv2/storage/binaries/d73eb26bab461b1bd630ac8ecf0c53a22a9229436b4251deeef100d60e545541
crc32: 56A802F6
md5: 0a8f8a168999ac1549335feb6ad87cfe
sha1: 589dd8bf022830ca9a42944deb590706668165d0
sha256: d73eb26bab461b1bd630ac8ecf0c53a22a9229436b4251deeef100d60e545541
sha512: b03f67e8fcd8f48e9cef96aa6917cde14e4596ba582105e0be5b36c60944b72f13b2b5e0544d622550f62a18f87dd179b2b38713bdfd29416e3b995b2eb68cb1
ssdeep: 12288:xneAeNumB0nhytnKhnF3of+giexDVlxq4CxibncNoerzpy:BFyznKX4f+6drmibcNh0
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C7D4010232BE2F2BDAB597FD143225200BB5BE2E2461E3185D8760DF6922F418F55F67
sha3_384: e1b21326048014756da30d39c31e7c01c8708f72bf837710640392e320e5310e5f2b44d01845b1406e7681fab85b10cf
ep_bytes: ff250020400000000000000000000000
timestamp: 2023-10-02 15:20:24

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: quanlydangvien
FileVersion: 1.0.0.0
InternalName: qGcg.exe
LegalCopyright: Copyright © 2015
LegalTrademarks:
OriginalFilename: qGcg.exe
ProductName: quanlydangvien
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Trojan:MSIL/Lokibot.CCCD!MTB also known as:

BkavW32.Common.8119280D
LionicTrojan.Win32.Noon.l!c
MicroWorld-eScanTrojan.GenericKD.69561265
FireEyeTrojan.GenericKD.69561265
SkyhighBehavesLike.Win32.Generic.hc
McAfeeArtemis!0A8F8A168999
MalwarebytesTrojan.MalPack.GS
ZillyaTrojan.Noon.Win32.31054
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005abf5d1 )
AlibabaTrojanSpy:MSIL/Lokibot.288b110c
K7GWTrojan ( 005abf5d1 )
CrowdStrikewin/malicious_confidence_100% (W)
ArcabitTrojan.Generic.D4256BB1
VirITTrojan.Win32.MSIL_Heur.A
SymantecTrojan.Gen.MBT
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/GenKryptik.GOLK
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Spy.MSIL.Noon.gen
BitDefenderTrojan.GenericKD.69561265
AvastWin32:PWSX-gen [Trj]
TencentMalware.Win32.Gencirc.13f12928
EmsisoftTrojan.GenericKD.69561265 (B)
F-SecureTrojan.TR/AD.GenSteal.lyfmz
DrWebTrojan.PackedNET.2032
VIPRETrojan.GenericKD.69561265
TrendMicroTrojanSpy.Win32.NEGASTEAL.YXDJCZ
Trapminesuspicious.low.ml.score
SophosTroj/Krypt-ABH
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.DarkStealerLoader
GoogleDetected
AviraTR/AD.GenSteal.lyfmz
MAXmalware (ai score=84)
Antiy-AVLTrojan/Script.Phonzy
KingsoftWin32.Troj.Generic.v
XcitiumMalware@#2dketolzb5pgy
MicrosoftTrojan:MSIL/Lokibot.CCCD!MTB
ViRobotTrojan.Win.Z.Agent.603648.CR
ZoneAlarmHEUR:Trojan-Spy.MSIL.Noon.gen
GDataTrojan.GenericKD.69561265
VaristW32/MSIL_Agent.FPI.gen!Eldorado
AhnLab-V3Trojan/Win.Injection.C5499981
VBA32TScope.Trojan.MSIL
ALYacTrojan.GenericKD.69561265
Cylanceunsafe
PandaTrj/Chgt.AD
TrendMicro-HouseCallTrojanSpy.Win32.NEGASTEAL.YXDJCZ
RisingMalware.Obfus/MSIL@AI.100 (RDM.MSIL2:lFlDhsPy6bp3OhLxXvZVIA)
IkarusTrojan.MSIL.Krypt
MaxSecureTrojan.Malware.73691310.susgen
FortinetMSIL/Kryptik.XSWP!tr
BitDefenderThetaGen:NN.ZemsilF.36792.Km0@aSqMdT
AVGWin32:PWSX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Trojan:MSIL/Lokibot.CCCD!MTB?

Trojan:MSIL/Lokibot.CCCD!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment