Trojan

What is “Trojan:Win32/Goabeny!rfn”?

Malware Removal

The Trojan:Win32/Goabeny!rfn is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Goabeny!rfn virus can do?

  • Creates RWX memory
  • A process attempted to delay the analysis task by a long amount of time.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan:Win32/Goabeny!rfn?


File Info:

crc32: 2FF35EB2
md5: de31344db26fcdb50a9fd76f6e3be047
name: DE31344DB26FCDB50A9FD76F6E3BE047.mlw
sha1: 6dbf49c1411ad0bd600513c7cdc416a7d853dcfd
sha256: dcb87b637b9074d09eab824dd379f3e79d521cf51f943447936864dc8e836c42
sha512: ee8fcddbfc0a3fe1081cc408394ca16a5f7bcf26cb0b1cdf7795ad3008a98fc83b8e091ae19f83657131f83f0174204a603273a62cf62963b6b1ca81e794d305
ssdeep: 6144:5Ch+9LojGH3OpK4j0EguSb04ALPCcmTgNraeLax6Tpaw8fbw4Rpl:AhwkjGXOcfNKPfmT7x6Na784Rn
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan:Win32/Goabeny!rfn also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Fugrafa.43324
FireEyeGeneric.mg.de31344db26fcdb5
CAT-QuickHealTrojan.Goabeny.A8
ALYacGen:Variant.Fugrafa.43324
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 00513dbd1 )
BitDefenderGen:Variant.Fugrafa.43324
K7GWTrojan ( 00513dbd1 )
Cybereasonmalicious.db26fc
CyrenW32/Goabeny.B.gen!Eldorado
SymantecTrojan.Gen
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.Generic-6335648-0
KasperskyHEUR:Trojan.Win32.Generic
NANO-AntivirusTrojan.Win32.Delf.fnceam
AvastWin32:GenMalicious-NXC [Trj]
RisingTrojan.Delf!1.B259 (CLASSIC)
Ad-AwareGen:Variant.Fugrafa.43324
EmsisoftGen:Variant.Fugrafa.43324 (B)
ComodoTrojWare.Win32.Delf.QJW@75wp2a
F-SecureHeuristic.HEUR/AGEN.1105402
DrWebTrojan.Inject2.59438
ZillyaTrojan.Delf.Win32.88561
McAfee-GW-EditionBehavesLike.Win32.Trojan.fh
SophosMal/Generic-S + Troj/DelpLdr-A
IkarusTrojan.Win32.Buzus
JiangminTrojanDownloader.Agent.bzxq
AviraHEUR/AGEN.1105402
eGambitUnsafe.AI_Score_93%
Antiy-AVLTrojan/Win32.TSGeneric
MicrosoftTrojan:Win32/Goabeny!rfn
ArcabitTrojan.Fugrafa.DA93C
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Fugrafa.43324
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Goabeny.R207035
Acronissuspicious
McAfeeTrojan-FNRS!DE31344DB26F
MAXmalware (ai score=86)
VBA32BScope.Trojan.Goabeny
MalwarebytesBanker.Trojan.Stealer.DDS
ESET-NOD32a variant of Win32/Delf.TRN
TencentMalware.Win32.Gencirc.10b0cec4
YandexTrojan.GenAsa!TAXekcpggFQ
SentinelOneStatic AI – Suspicious PE – Downloader
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Jacard.TRN!tr
BitDefenderThetaGen:NN.ZelphiF.34804.wGW@aGG5Sy
AVGWin32:GenMalicious-NXC [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Trojan:Win32/Goabeny!rfn?

Trojan:Win32/Goabeny!rfn removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment