Trojan

VHO:Trojan-Downloader.Win32.Deyma.cij removal

Malware Removal

The VHO:Trojan-Downloader.Win32.Deyma.cij is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What VHO:Trojan-Downloader.Win32.Deyma.cij virus can do?

  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine VHO:Trojan-Downloader.Win32.Deyma.cij?


File Info:

crc32: 8123DBE7
md5: c2cd91c6f58efb7cc74182bbb55412cb
name: C2CD91C6F58EFB7CC74182BBB55412CB.mlw
sha1: 6bf45ca31cc42ea62026b976a960c63f7c1e636a
sha256: 3801c076d95da2adf169701a6a0d1bb0fab9d1f8b80f1ecaa60da123f2b0f237
sha512: 839fdf5cda640f2b97b3234ccfdb2571d4501d2c2de822a9689caf3a697d1827b1d962ed149ba49b934d24bb4b9cd69c08234b62fb78aad4ea1182da8079e67d
ssdeep: 196608:JdMTYKMFy2/OSc+UsFiVNb00iWDnH6cwD3FGnUX0tg917Zzf9Pn6:JdMTcnc+UsFOgdWrKDso0Klf9C
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

VHO:Trojan-Downloader.Win32.Deyma.cij also known as:

Elasticmalicious (high confidence)
DrWebTrojan.Siggen14.58048
ClamAVWin.Packed.Barys-9859531-0
CAT-QuickHealTrojan.SabsikIH.S21959152
ALYacGen:Variant.Jaik.45735
CyrenW32/MSIL_Troj.BRW.gen!Eldorado
ESET-NOD32multiple detections
APEXMalicious
AvastWin32:DropperX-gen [Drp]
CynetMalicious (score: 100)
KasperskyVHO:Trojan-Downloader.Win32.Deyma.cij
BitDefenderGen:Variant.Jaik.45735
MicroWorld-eScanGen:Variant.Jaik.45735
BitDefenderThetaGen:NN.ZedlaF.34266.n88baOE@FOp
TrendMicroTrojan.MSIL.ANTILOADR.SMPAO
McAfee-GW-EditionBehavesLike.Win32.Generic.rc
FireEyeGeneric.mg.c2cd91c6f58efb7c
EmsisoftGen:Variant.Jaik.45735 (B)
SentinelOneStatic AI – Suspicious PE
AviraHEUR/AGEN.1144141
Antiy-AVLTrojan/Generic.ASMalwS.34AE34A
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ArcabitTrojan.Jaik.DB2A7
GDataGen:Variant.Jaik.45735
MAXmalware (ai score=88)
VBA32BScope.TrojanRansom.FileCryptor
MalwarebytesTrojan.Dropper.SFX.Generic
TrendMicro-HouseCallTROJ_GEN.R002H0CKE21
RisingDropper.Agent/NSIS!1.D805 (CLASSIC)
FortinetW32/BSE.4Q7Q!tr
AVGWin32:DropperX-gen [Drp]

How to remove VHO:Trojan-Downloader.Win32.Deyma.cij?

VHO:Trojan-Downloader.Win32.Deyma.cij removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment