Trojan

How to remove “Dropped:Trojan.Generic.2946908”?

Malware Removal

The Dropped:Trojan.Generic.2946908 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Dropped:Trojan.Generic.2946908 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Drops a binary and executes it
  • Performs some HTTP requests
  • Unconventionial binary language: Russian
  • Unconventionial language used in binary resources: Russian
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file

Related domains:

edgedl.me.gvt1.com

How to determine Dropped:Trojan.Generic.2946908?


File Info:

crc32: 37C70097
md5: 0169d216bff162d55cc531c61bf239ae
name: 0169D216BFF162D55CC531C61BF239AE.mlw
sha1: d18ed943a55427e892d8165c49073a35e04295e7
sha256: dcef0395f6b8249f4575010be1a543f468f1d37d11f932201a737ae571354d6f
sha512: 31476d0fbc035cd9e3cc8a79773c8b08a8dc5dfe53cb8201b4edc807bac5c17256a3ffe5f8d583d2eea5cb2a604cab7a83b64f4981facb80ec5e363d380ea333
ssdeep: 6144:tyfLYHEFfyz6CQwzFa+XigCPycda4U88f6/ywAi9XXLrXW:Af8kFxwzFa2igCP12Brwt93m
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2009
InternalName: Setup1
FileVersion: 1, 3, 0, 4
ProductName: Setup
ProductVersion: 1, 3, 0, 4
FileDescription: Setup1
OriginalFilename: Setup1
Translation: 0x0419 0x04b0

Dropped:Trojan.Generic.2946908 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0055e4091 )
Elasticmalicious (high confidence)
DrWebTrojan.Siggen.39886
CynetMalicious (score: 100)
ALYacDropped:Trojan.Generic.2946908
CylanceUnsafe
ZillyaTrojan.Agent.Win32.683523
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaTrojan:Win32/LockScreen.fd0fae80
K7GWTrojan ( 0055e4091 )
Cybereasonmalicious.6bff16
BaiduWin32.Trojan.LockScreen.az
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/LockScreen.ES
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderDropped:Trojan.Generic.2946908
NANO-AntivirusTrojan.Win32.BrowseBan.crmgvv
MicroWorld-eScanDropped:Trojan.Generic.2946908
TencentWin32.Trojan.Lockscreen.Crh
Ad-AwareDropped:Trojan.Generic.2946908
SophosMal/Generic-S
ComodoMalware@#1l5w8w1ewf214
BitDefenderThetaAI:Packer.32B460A621
VIPRETrojan.Win32.Generic.pak!cobra
McAfee-GW-EditionBehavesLike.Win32.Generic.jt
FireEyeGeneric.mg.0169d216bff162d5
EmsisoftDropped:Trojan.Generic.2946908 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/PornoBlocker.ai
AviraADWARE/Adware.Gen3
eGambitGeneric.Dropper
MicrosoftTrojan:Win32/Occamy.C
ArcabitTrojan.Generic.D2CF75C
GDataDropped:Trojan.Generic.2946908
AhnLab-V3Trojan/Win32.PinkBlocker.C79358
Acronissuspicious
McAfeeGenericR-HJY!0169D216BFF1
MAXmalware (ai score=100)
VBA32BScope.Trojan.Winlock
MalwarebytesMalware.AI.58139796
PandaTrj/CI.A
RisingTrojan.Generic@ML.89 (RDML:51FV6yt2h9hzE6vO01Vjgw)
YandexTrojan.GenAsa!0XABSul5bbM
IkarusTrojan-Dropper.Win32.Blocker
FortinetW32/Generic.AC.2F9DE9!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Dropped:Trojan.Generic.2946908?

Dropped:Trojan.Generic.2946908 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment