Malware

VBA:Logan.865 malicious file

Malware Removal

The VBA:Logan.865 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What VBA:Logan.865 virus can do?

  • A potential decoy document was displayed to the user
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs

How to determine VBA:Logan.865?


File Info:

crc32: D6D2C5D0
md5: b06d80527f77f24099d54a02dbe1ef34
name: upload_file
sha1: 781e8ca566e76288d4c9a8c5f3998a047e642239
sha256: 487c7958edf1dcd4afe9b0128078ae7634b23364fcf5ae41eb57ef79b3ddce4c
sha512: fb797c7c09e8ade2feb680107f1d1bc4096976c0ca2be709b098c28504c8680f87f4a57e8800251987abc11e1fe4712a30dfcfeff5383a74fca38e2da30e3aa9
ssdeep: 3072:QBeY5kb0TUNAuBqVPlB11nBs7vuL+EdRQQM+XRO9H8:QEYOb0TUquBqt7nBoGL5DhRO9c
type: Composite Document File V2 Document, Little Endian, Os: Windows, Version 6.2, Code page: 1252, Title: Odio., Author: Cdlia Da silva, Template: Normal.dotm, Revision Number: 1, Name of Creating Application: Microsoft Office Word, Create Time/Date: Wed Oct 14 08:17:00 2020, Last Saved Time/Date: Wed Oct 14 08:17:00 2020, Number of Pages: 1, Number of Words: 1472, Number of Characters: 8391, Security: 8

Version Info:

0: [No Data]

VBA:Logan.865 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanVBA:Logan.865
FireEyeVBA:Logan.865
ALYacTrojan.Emotet.AMF
K7AntiVirusTrojan ( 005703b31 )
K7GWTrojan ( 005703b31 )
TrendMicroTrojan.W97M.EMOTET.SMBA
CyrenW97M/Downldr.IE.gen!Eldorado
SymantecW97M.Downloader
TrendMicro-HouseCallTrojan.W97M.EMOTET.SMBA
ClamAVDoc.Malware.Emotet-9777973-1
KasperskyHEUR:Trojan.MSOffice.SAgent.gen
BitDefenderVBA:Logan.865
RisingMalware.ObfusVBA@ML.97 (VBA)
Ad-AwareVBA:Logan.865
EmsisoftTrojan-Downloader.Macro.Generic.BW (A)
F-SecureMalware.VBA/Dldr.Agent.fiwhe
DrWebW97M.DownLoader.4860
InvinceaMal/DocDl-K
McAfee-GW-EditionRDN/Generic.rp
SophosMal/DocDl-K
AviraVBA/Dldr.Agent.fiwhe
MAXmalware (ai score=80)
MicrosoftTrojanDownloader:O97M/Emotet.CSK!MTB
ArcabitTrojan.Emotet.AMF
ZoneAlarmHEUR:Trojan.MSOffice.SAgent.gen
GDataMacro.Trojan-Downloader.Agent.AVL
CynetMalicious (score: 85)
AhnLab-V3Downloader/DOC.Emotet.S1304
ESET-NOD32VBA/TrojanDownloader.Agent.UFY
TencentHeur.Macro.Generic.h.461d1873
IkarusTrojan-Downloader.VBA.Emotet
FortinetVBA/Agent.AVL!tr
Qihoo-360virus.office.qexvmc.1075

How to remove VBA:Logan.865?

VBA:Logan.865 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment