Trojan

Trojan:Win32/Dishigy.D removal guide

Malware Removal

The Trojan:Win32/Dishigy.D is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Dishigy.D virus can do?

  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Creates a copy of itself
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan:Win32/Dishigy.D?


File Info:

name: 0C12683AA5CCD7E98B68.mlw
path: /opt/CAPEv2/storage/binaries/f84ac6fdbb52f3e5bc25f8f0152d6ce35f69450b34daad73d2fa2bfdd90f1410
crc32: B593CC6D
md5: 0c12683aa5ccd7e98b6815e659272f00
sha1: 3d865fa4f6874ba8f12f1acf885a80bca7419e49
sha256: f84ac6fdbb52f3e5bc25f8f0152d6ce35f69450b34daad73d2fa2bfdd90f1410
sha512: 13643abf300b7b695e3c933caaf20017e07da8dcaaa92489e45f6b150df64b293b294a115f1f3cf3e6b741fd9a49ac52b86c37a558fad5202fd4e8462d617e41
ssdeep: 1536:U9jrB1y3JgqwC6/Q2XGmwzp5o7t/nPbUS7Dkd43c59jl/QcxibJDm:Qf3y3KCYQeqzYhUS7mdnQcx4Dm
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1827302B65350ADD5D7E2CF317BB2465233D8EDE14B001F424C1599D82E6B34A8AFD28C
sha3_384: 06e825904d8bf69c5d46dca5ca3c29f30c93360cbbb027219a9fa6e6d985819eb6ee2e001578be511cfaa5b42668581b
ep_bytes: 60be006042008dbe00b0fdffc787c4a0
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Trojan:Win32/Dishigy.D also known as:

BkavW32.AIDetectMalware
LionicVirus.Win32.Lamer.lwoN
ClamAVWin.Trojan.Dishigy-6
Cylanceunsafe
ZillyaWorm.Zwr.Win32.31
SangforTrojan.Win32.Save.a
K7AntiVirusEmailWorm ( 003a874a1 )
AlibabaTrojan:Win32/Dishigy.52c1f465
K7GWEmailWorm ( 003a874a1 )
Cybereasonmalicious.aa5ccd
BitDefenderThetaAI:Packer.D0CAF4B41F
VirITTrojan.Win32.X-Atrapas.FDPU
CyrenW32/A-d7709921!Eldorado
SymantecTrojan.Dirtjump
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of Win32/Dishigy.AA
TrendMicro-HouseCallTROJ_AGENT_009758.TOMB
AvastWin32:Evo-gen [Trj]
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Fsysna.anfh
BitDefenderGen:Heur.Mint.Zard.30
NANO-AntivirusTrojan.Win32.DirtJump.duivng
MicroWorld-eScanGen:Heur.Mint.Zard.30
TencentWin32.Trojan.Fsysna.Qcnw
TACHYONTrojan/W32.DP-Fsysna.194560
SophosTroj/Delf-FJQ
BaiduWin32.Trojan.Delf.fv
F-SecureTrojan.TR/ATRAPS.Gen
DrWebBackDoor.DirtJump.334
VIPREGen:Heur.Mint.Zard.30
TrendMicroTROJ_AGENT_009758.TOMB
McAfee-GW-EditionBehavesLike.Win32.Rootkit.lc
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.0c12683aa5ccd7e9
EmsisoftGen:Heur.Mint.Zard.30 (B)
JiangminTrojan/Generic.qsyf
WebrootW32.Trojan.Gen
AviraTR/ATRAPS.Gen
Antiy-AVLWorm/Win32.Zwr
MicrosoftTrojan:Win32/Dishigy.D
XcitiumTrojWare.Win32.Scar.FQCT@4ocig0
ArcabitTrojan.Mint.Zard.30
ViRobotTrojan.Win32.A.Scar.75264.A[UPX]
ZoneAlarmTrojan.Win32.Fsysna.anfh
GDataGen:Heur.Mint.Zard.30
GoogleDetected
AhnLab-V3Worm/Win32.Zwr.R31771
VBA32TScope.Trojan.Delf
MAXmalware (ai score=100)
MalwarebytesMalware.Heuristic.1003
PandaTrj/CI.A
APEXMalicious
RisingTrojan.Dishigy!8.80E (CLOUD)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.7335162.susgen
FortinetW32/Delf.NBR!tr
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_60% (D)

How to remove Trojan:Win32/Dishigy.D?

Trojan:Win32/Dishigy.D removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment