Trojan

Dropped:Trojan.Script.129236 malicious file

Malware Removal

The Dropped:Trojan.Script.129236 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Dropped:Trojan.Script.129236 virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • Detected script timer window indicative of sleep style evasion
  • Reads data out of its own binary image
  • A process created a hidden window
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • A scripting utility was executed
  • Network activity detected but not expressed in API logs

How to determine Dropped:Trojan.Script.129236?


File Info:

crc32: F87E56C6
md5: 110801d8482b4247c84882dc032e377e
name: 110801D8482B4247C84882DC032E377E.mlw
sha1: 8e6d1d5adf86c6b8c55832a0e9a43f0f82b78cdc
sha256: ddacdf7a7d7f171f6e4717b215289b58675194149eea69b9637f726871065759
sha512: 80337537aa25cd9c55adfc29e5b3e4331187b6402c8f7e57a00136e7c7e7375912c20968f85c27ecac5b7072c4c20fd44954db557c74d3fc633f0c7a4354d294
ssdeep: 384:2AhlgI/HULp3PVUoWkq1mcKP19SUMBGpLGQNPC2a+VkjFQwEcKoYSr:2AHAp9Ulkq54PSUHS+62cT
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Dropped:Trojan.Script.129236 also known as:

BkavW32.AIDetectVM.malware1
MicroWorld-eScanDropped:Trojan.Script.129236
FireEyeGeneric.mg.110801d8482b4247
ALYacDropped:Trojan.Script.129236
CylanceUnsafe
VIPRETrojanDropper.Win32.Jevafus.B (v)
SangforMalware
K7AntiVirusTrojan-Downloader ( 0056a32d1 )
BitDefenderDropped:Trojan.Script.129236
K7GWTrojan-Downloader ( 0056a32d1 )
CrowdStrikewin/malicious_confidence_60% (W)
BitDefenderThetaAI:Packer.54717E2321
CyrenW32/Jevafus.A.gen!Eldorado
SymantecML.Attribute.HighConfidence
TotalDefenseWin32/Jevafus.I
APEXMalicious
ClamAVWin.Trojan.Agent-121985
KasperskyHEUR:Trojan.Script.Alien.gen
AlibabaTrojanDownloader:Win32/Alien.aed72291
NANO-AntivirusTrojan.Win32.Agent.dwkete
ViRobotTrojan.Win32.Agent.26112.AFJ
AegisLabTrojan.Win32.Agent.4!c
RisingTrojan.Win32.Generic.13656253 (C64:YzY0OuXyY0/hmUla)
Ad-AwareDropped:Trojan.Script.129236
EmsisoftDropped:Trojan.Script.129236 (B)
ComodoMalware@#11n0ikeq5uga9
F-SecureTrojan.TR/Drop.Agent.GM.4
DrWebTrojan.MulDrop.29115
ZillyaTrojan.Agent.Win32.98903
McAfee-GW-EditionBehavesLike.Win32.Generic.mc
SophosML/PE-A + Mal/Jevafus-A
SentinelOneStatic AI – Suspicious PE
JiangminTrojan/Agent.bsye
WebrootW32.Downloader.Gen
AviraTR/Drop.Agent.GM.4
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.SGeneric
KingsoftWin32.Troj.Agent.az.(kcloud)
MicrosoftTrojan:Win32/Ymacco.ABDD
ArcabitTrojan.Script.D1F8D4
ZoneAlarmHEUR:Trojan.Script.Alien.gen
GDataDropped:Trojan.Script.129236
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Jevafus.R24811
McAfeeArtemis!110801D8482B
MalwarebytesMalware.Heuristic.1003
PandaTrj/Downloader.XDT
ESET-NOD32Win32/TrojanDownloader.Delf.OLI
TencentWin32.Trojan.Generic.Dtiu
YandexTrojan.GenAsa!7r0ctCHW58Q
IkarusTrojan-Dropper.Win32.ScriptDrop
eGambitUnsafe.AI_Score_84%
FortinetW32/Delf.OLI!tr.dldr
AVGFileRepMalware
AvastFileRepMalware
Qihoo-360Generic/Trojan.Script.18f

How to remove Dropped:Trojan.Script.129236?

Dropped:Trojan.Script.129236 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment