Virus

About “Virus.Win32.Triusor” infection

Malware Removal

The Virus.Win32.Triusor is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Virus.Win32.Triusor virus can do?

  • Dynamic (imported) function loading detected
  • Manipulates data from or to the Recycle Bin
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Virus.Win32.Triusor?


File Info:

name: 7C1815B917FD4B57ACC8.mlw
path: /opt/CAPEv2/storage/binaries/a81e8192e7e0e40213e554076d3f5233fdef6dccd08713027a34533c26b9ed71
crc32: CF935D83
md5: 7c1815b917fd4b57acc82c06f199df89
sha1: d7b97fcb03c2b70a04e80d0d71630378e7bea153
sha256: a81e8192e7e0e40213e554076d3f5233fdef6dccd08713027a34533c26b9ed71
sha512: 3bea4db1b0700289689d04839824972fd575f1f7d30f245457fffa6b663542278ac183d3bafc945dc7685433d33a36b8716e164b54e64f07b364666c48b3c169
ssdeep: 1536:zHB0UxMkzOt7HcvJGt5AdHIOWnToIf12Zqdo+3OVgtsoac:zhAWJGSCTBf12Zp+3+gmoa
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T159937C047DD34533E4B1497082D64ADA9FBEFC2336A2212FDF0B1FD517A019889A56FA
sha3_384: 68b7b36e91cc29d9c71e2cee853ff542fb7f230fa68e0f98ca93ca63bc8acd21f6c719dd225f881cc8c89141567978ce
ep_bytes: 558bec6aff6800514100683810410064
timestamp: 2006-10-04 15:16:27

Version Info:

0: [No Data]

Virus.Win32.Triusor also known as:

BkavW32.AIDetect.malware1
LionicVirus.Win32.Triusor.n!c
Elasticmalicious (high confidence)
DrWebWin32.EquationKiller.1
MicroWorld-eScanWin32.Triusor.A
ALYacWin32.Triusor.A
CylanceUnsafe
Sangfor[ARMADILLO V1.71]
K7AntiVirusTrojan ( 004f12f91 )
Alibabavirus:Win32/InfectPE.ali2000007
K7GWTrojan ( 004f12f91 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaAI:FileInfector.AD9B3E700F
ESET-NOD32a variant of Win32/Resur.I
TrendMicro-HouseCallVirus.Win32.RESUR.A
Paloaltogeneric.ml
ClamAVWin.Malware.Triusor-6813599-0
BitDefenderWin32.Triusor.A
NANO-AntivirusVirus.Win32.Infector.eazaig
AvastWin32:Malware-gen
Ad-AwareWin32.Triusor.A
EmsisoftWin32.Triusor.A (B)
ComodoTrojWare.Win32.Nimnul.A@5waoem
TrendMicroVirus.Win32.RESUR.A
McAfee-GW-EditionBehavesLike.Win32.Triusor.nh
SentinelOneStatic AI – Malicious PE
FireEyeGeneric.mg.7c1815b917fd4b57
SophosMal/Generic-S
IkarusWin32.Outbreak
GDataWin32.Triusor.A
AviraHEUR/AGEN.1240750
ArcabitWin32.Triusor.A
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
McAfeeW32/Triusor.A
VBA32Virus.Win32.Triusor
MalwarebytesMalware.AI.919112402
APEXMalicious
RisingVirus.Resur!1.B42C (CLASSIC)
MAXmalware (ai score=85)
FortinetW32/Agent.FN
AVGWin32:Malware-gen
Cybereasonmalicious.917fd4

How to remove Virus.Win32.Triusor?

Virus.Win32.Triusor removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment