Trojan

Trojan:Win32/Wantvi.I information

Malware Removal

The Trojan:Win32/Wantvi.I is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Wantvi.I virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality
  • Uses Windows utilities for basic functionality

How to determine Trojan:Win32/Wantvi.I?


File Info:

name: 9C3070E969A4D0F7DEC2.mlw
path: /opt/CAPEv2/storage/binaries/614979769121de60bc98ddeafcd38a51e38c376e6fb4029ba900ec5c779b26b3
crc32: 3388D163
md5: 9c3070e969a4d0f7dec2d94b0c15096a
sha1: c8479156b55416469996b9b9437b985be6787ac4
sha256: 614979769121de60bc98ddeafcd38a51e38c376e6fb4029ba900ec5c779b26b3
sha512: c810132f24fb67a07dee2555240bd329e1496ae32ab7d742a8769fcf49a7d81e13979b2ce34555d12900677d6cb13111f7994fb13698d58967bd6dea820359b0
ssdeep: 1536:YIwRr/u+sfDzN7DMZe9gSnZ9ZKqtSOzpj:YRU+sf/N7DMZsZ9ZKIv
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1673302E4F0551692FD8119FF0F1675AC41C3AEB89DD46700E98B031AAD9CEAE70EC380
sha3_384: cc3b605927903abacb8108c06c2fd569e505a309f2f1b50d040268fba457994960125c63b66a2e308472e4c3813a6ebf
ep_bytes: 6090e801000000905b906633db8bc390
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan:Win32/Wantvi.I also known as:

BkavW32.AIDetect.malware2
LionicHeuristic.File.Generic.00×1!p
Elasticmalicious (high confidence)
DrWebTrojan.Packed.596
MicroWorld-eScanTrojan.Crypt.EQ
FireEyeGeneric.mg.9c3070e969a4d0f7
ALYacTrojan.Crypt.EQ
MalwarebytesMalware.AI.3673677088
VIPRETrojan.Crypt.EQ
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 000204251 )
AlibabaTrojan:Win32/Bravia.332fc71a
K7GWTrojan ( 000204251 )
CrowdStrikewin/malicious_confidence_90% (W)
ArcabitTrojan.Crypt.EQ
BitDefenderThetaAI:Packer.EA67E4761E
CyrenW32/Trojan.RGSS-8835
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Kryptik.N
APEXMalicious
TrendMicro-HouseCallMal_Renos-4
Paloaltogeneric.ml
KasperskyHoax.Win32.Bravia.j
BitDefenderTrojan.Crypt.EQ
NANO-AntivirusTrojan.Win32.Pakes.snli
AvastWin32:Agent-ZIW [Drp]
TencentWin32.Trojan-PSW.Bravia.Ngil
Ad-AwareTrojan.Crypt.EQ
EmsisoftTrojan.Crypt.EQ (B)
ComodoTrojWare.Win32.TrojanClicker.Delf.~d02@1oi02n
ZillyaTrojan.Kryptik.Win32.61293
TrendMicroMal_Renos-4
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.pc
Trapminemalicious.high.ml.score
CMCGeneric.Win32.9c3070e969!CMCRadar
SophosMal/EncPk-EQ
SentinelOneStatic AI – Suspicious PE
JiangminTrojan/Pakes.cmi
WebrootTrojan:Win32/Wantvi.I
GoogleDetected
AviraTR/Crypt.ZPACK.Gen
MAXmalware (ai score=100)
Antiy-AVLTrojan/Generic.ASMalwS.9B4
MicrosoftTrojan:Win32/Wantvi.I
SUPERAntiSpywareTrojan.Agent/Gen-Small[N]
GDataTrojan.Crypt.EQ
CynetMalicious (score: 100)
McAfeeArtemis!9C3070E969A4
VBA32Trojan.ExpProc.014
CylanceUnsafe
RisingTrojan.Win32.Pakes.dfu (CLASSIC)
YandexTrojan.Pakes!U5rCbaAvNLc
IkarusHoax.Win32.Bravia
FortinetW32/FakeAlert.C!tr
AVGWin32:Agent-ZIW [Drp]
Cybereasonmalicious.969a4d
PandaAdware/RogueAntimalware2009

How to remove Trojan:Win32/Wantvi.I?

Trojan:Win32/Wantvi.I removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment