Trojan

How to remove “Trojan:Win32/Alureon.EQ”?

Malware Removal

The Trojan:Win32/Alureon.EQ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Alureon.EQ virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Trojan:Win32/Alureon.EQ?


File Info:

name: F99842B1BB773DF15691.mlw
path: /opt/CAPEv2/storage/binaries/f5fd0a9717f9fa22accdfe779493d3d8669ae1ccb0c34b99b288812fe18e0539
crc32: 631E5787
md5: f99842b1bb773df15691a36eba6a576a
sha1: 980c7890969bfe19e4d3d95716309a1f5223edcb
sha256: f5fd0a9717f9fa22accdfe779493d3d8669ae1ccb0c34b99b288812fe18e0539
sha512: 1e1648de2de8258ba3807ce17c08c1446b7a80119b473889ac7da92b39960b1c28232b0bec538dc81b006170c71eebd8c56f09332c3d5fd406ea85af041a2775
ssdeep: 768:JuaKQcjj0rS28ITptv2jK3Awjsc4P4kIKM5JGvJW1Q6L9XK5TVhvdPeLFncbIs:8aKQcjIrSoLvkKCHQAhx0YVDPI5EIs
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1C753F2C1476C8D69EFBA027A5847E02DD72E65204192EE45F3C631228B6E747DB13B3D
sha3_384: e468aaf5d6de5f1e5a8e81f4355a6f88da2ad1e7959d310b5150880d44b1ff40df2b4ef2e70b5967baacb06e85cdde4b
ep_bytes: 8bc7558bec400fbec0e8af0000008bcd
timestamp: 2011-05-27 21:04:23

Version Info:

0: [No Data]

Trojan:Win32/Alureon.EQ also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Alureon.4!c
AVGWin32:FakeAV-BWF [Trj]
MicroWorld-eScanGen:Variant.FakeAV.47
CAT-QuickHealTrojan.Alureon.Gen
SkyhighBehavesLike.Win32.Dropper.kc
McAfeeDNSChanger.cq.a
MalwarebytesMalware.AI.45179089
ZillyaTrojan.FakeAV.Win32.84259
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 002e0b4b1 )
AlibabaVirTool:Win32/Obfuscator.649fd19d
K7GWTrojan ( 002e0b4b1 )
CrowdStrikewin/malicious_confidence_100% (W)
VirITTrojan.Win32.Generic.BMJC
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32Win32/Olmasco.Gen
CynetMalicious (score: 99)
APEXMalicious
ClamAVWin.Trojan.Agent-822997
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.FakeAV.47
NANO-AntivirusTrojan.Win32.MLW.djwse
AvastWin32:FakeAV-BWF [Trj]
RisingTrojan.Olmasco!8.474 (TFE:5:98CN91VZl4N)
EmsisoftGen:Variant.FakeAV.47 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebBackDoor.Tdss.4961
VIPREGen:Variant.FakeAV.47
TrendMicroTROJ_ALUREON.BKL
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.f99842b1bb773df1
SophosMal/FakeAV-CS
JiangminTrojan/Generic.gzoi
VaristW32/FakeAlert.OF.gen!Eldorado
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.AGeneric
Kingsoftmalware.kb.a.1000
MicrosoftTrojan:Win32/Alureon.EQ
XcitiumTrojWare.Win32.Kryptik.LMA@4gum0r
ArcabitTrojan.FakeAV.47
ViRobotTrojan.Win32.Z.Fakeav.65536.F
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.FakeAV.47
GoogleDetected
AhnLab-V3Trojan/Win32.FakeAlert.R4112
BitDefenderThetaGen:NN.ZedlaF.36802.eq8@aSEVpkl
VBA32Trojan.TDSS.01414
Cylanceunsafe
PandaAdware/WindowsRecovery
TrendMicro-HouseCallTROJ_ALUREON.BKL
TencentWin32.Trojan.Crypt.Ncnw
IkarusTrojan.Win32.FakeAlert
MaxSecureTrojan.Malware.2588.susgen
FortinetW32/Kryptik.CQW!tr
DeepInstinctMALICIOUS
alibabacloudTrojan:Win/Olmasco.Gen

How to remove Trojan:Win32/Alureon.EQ?

Trojan:Win32/Alureon.EQ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment