Trojan

Trojan:Win32/VinoSiren.F!dha removal guide

Malware Removal

The Trojan:Win32/VinoSiren.F!dha is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/VinoSiren.F!dha virus can do?

  • Mimics the system’s user agent string for its own requests
  • A process created a hidden window
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Uses Windows utilities for basic functionality
  • Installs itself for autorun at Windows startup
  • Attempts to modify proxy settings
  • Created a service that was not started

Related domains:

z.whorecord.xyz
a.tomx.xyz
www.totalmateria.net
www.materialindia.in
katawaku.jp

How to determine Trojan:Win32/VinoSiren.F!dha?


File Info:

crc32: 18C3F273
md5: 4c357078e539beca24f290ff532f5cfe
name: 4C357078E539BECA24F290FF532F5CFE.mlw
sha1: cd6743f3ad8efedb923a7856e32826195818e199
sha256: bf8e3f0430a2a53608432cca208ac7d932e84a557defcfcdcb468b68cfacd7f8
sha512: db530ab865d3c4478c245529fcfac9a5f6f98109eb314779f2e5c12134c501f8e17cecaac8a9b3791ef928b21721d03da5ae6a0d16e1143c35f2ef3ad42ef44e
ssdeep: 3072:LpOJg0TI0Lk9NxqJpTtqaqWJD55M7DDn:VT0TmqJppqB0o7Db
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan:Win32/VinoSiren.F!dha also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Cerbu.60952
FireEyeGeneric.mg.4c357078e539beca
ALYacBackdoor.Dtrack.gen
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.DTrack.m!c
SangforTrojan.Win32.VinoSiren.F
K7AntiVirusSpyware ( 00558bfc1 )
BitDefenderGen:Variant.Cerbu.60952
K7GWSpyware ( 00558bfc1 )
Cybereasonmalicious.8e539b
BitDefenderThetaGen:NN.ZexaF.34574.kqW@a8b5I1d
CyrenW32/Trojan.GLJZ-3589
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Spy.Keydoor.AW
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Malware.DTrack-7376288-0
KasperskyHEUR:Backdoor.Win32.DTrack.gen
AlibabaTrojanSpy:Win32/VinoSiren.06122d67
NANO-AntivirusTrojan.Win32.DTrack.gdadsb
ViRobotTrojan.Win32.S.Agent.177664.FY
RisingBackdoor.DTrack/APT#Lazarus!1.BF98 (CLOUD)
Ad-AwareGen:Variant.Cerbu.60952
SophosMal/Generic-S
ComodoMalware@#awvza15utd5m
F-SecureBackdoor.BDS/Keydoor.ykcxt
DrWebTrojan.DTrack.1
ZillyaTrojan.Keydoor.Win32.112
McAfee-GW-EditionBehavesLike.Win32.Dropper.ch
EmsisoftGen:Variant.Cerbu.60952 (B)
IkarusTrojan.Win32.VinoSiren
JiangminBackdoor.DTrack.u
AviraBDS/Keydoor.ykcxt
MAXmalware (ai score=88)
Antiy-AVLTrojan[Backdoor]/Win32.DTrack
MicrosoftTrojan:Win32/VinoSiren.F!dha
ArcabitTrojan.Cerbu.DEE18
AhnLab-V3Malware/Win32.Generic.C3521298
ZoneAlarmHEUR:Backdoor.Win32.DTrack.gen
GDataGen:Variant.Cerbu.60952
CynetMalicious (score: 100)
McAfeeTrojan-MPanda!4C357078E539
VBA32Backdoor.DTrack
MalwarebytesMalware.AI.4158659702
PandaTrj/CI.A
TencentMalware.Win32.Gencirc.116a375a
FortinetW32/Generic.AC.46407B
AVGWin32:Trojan-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Win32/Backdoor.Dtrack.HgIASOMA

How to remove Trojan:Win32/VinoSiren.F!dha?

Trojan:Win32/VinoSiren.F!dha removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment