Malware

About “Generic.Skintrim.0644D59F” infection

Malware Removal

The Generic.Skintrim.0644D59F is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Skintrim.0644D59F virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Generic.Skintrim.0644D59F?


File Info:

name: 00A925640EFEC1CDBD0A.mlw
path: /opt/CAPEv2/storage/binaries/6e3e876e9ddbcec5a39997c36d07fd696916eb30120840a17406dad5089d26c9
crc32: DC42B519
md5: 00a925640efec1cdbd0a2257fd5ef560
sha1: 7c317c7a25d00ecd15e049f7ffd5d60bb40084fd
sha256: 6e3e876e9ddbcec5a39997c36d07fd696916eb30120840a17406dad5089d26c9
sha512: 37b1c355f683622b1dd077c5e8e099650417d81fa6817c4793f63f6f080665ce714fc2c046b1e8c8d251531ef8778d323434505461c95077ab4e2ec524b82d88
ssdeep: 12288:CdaURHnj3bUbaCmPAg/tvENZK1mkoFQXnDiqHdsPp0p:C5RHnj3b7CnghEfAjXDi9p6
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B8941212D177A0F8F15E13F494DABDF0E8C4AFE825BB815B7700C9AB1366830A60B675
sha3_384: d8b340f7888bf7269cd60926eae4c8f270a59e257788f57b1a9023e2cd0058043b223820d750ae1f366dc11f526983d0
ep_bytes: 81ecf4050000535556578d8c24dc0300
timestamp: 2007-11-12 18:34:25

Version Info:

0: [No Data]

Generic.Skintrim.0644D59F also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Lipler.kYSM
MicroWorld-eScanDeepScan:Generic.Skintrim.0644D59F
ClamAVWin.Trojan.Wintrim-117
FireEyeGeneric.mg.00a925640efec1cd
CAT-QuickHealTrojan.Wintrim.MUE.AB4
ALYacDeepScan:Generic.Skintrim.0644D59F
MalwarebytesMachineLearning/Anomalous.100%
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( f10008011 )
AlibabaTrojanDownloader:Win32/Lipler.987f985b
K7GWTrojan ( f10008011 )
Cybereasonmalicious.a25d00
BitDefenderThetaAI:Packer.5F784DB71F
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Skintrim.EE
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-Downloader.Win32.Lipler.iml
BitDefenderDeepScan:Generic.Skintrim.0644D59F
NANO-AntivirusTrojan.Win32.Lipler.bjybw
AvastWin32:Hrupka-A [Cryp]
SophosMal/Swizzor-H
F-SecureAdware:W32/Wintrim.gen!P
DrWebTrojan.DownLoad3.20465
VIPREDeepScan:Generic.Skintrim.0644D59F
TrendMicroTROJ_LIPLER.SMI
Trapminemalicious.high.ml.score
EmsisoftDeepScan:Generic.Skintrim.0644D59F (B)
IkarusTrojan.Win32.Troxen
GDataDeepScan:Generic.Skintrim.0644D59F
JiangminTrojanDownloader.Lipler.tl
WebrootW32.Malware.Downloader
GoogleDetected
AviraTR/Crypt.ZPACK.Gen2
MAXmalware (ai score=88)
Antiy-AVLTrojan[Downloader]/Win32.Lipler
Kingsoftmalware.kb.a.1000
XcitiumPacked.Win32.Hrup.b@2hm02h
ArcabitDeepScan:Generic.Skintrim.0644D59F
ZoneAlarmTrojan-Downloader.Win32.Lipler.iml
MicrosoftAdware:Win32/Lollipop
VaristW32/Wintrim.C.gen!Eldorado
AhnLab-V3Win-Trojan/Lipler.Gen
Acronissuspicious
VBA32SScope.Trojan.Lipler.03
TACHYONTrojan-Downloader/W32.Lipler.442552
Cylanceunsafe
PandaAdware/NaviPromo
TrendMicro-HouseCallTROJ_LIPLER.SMI
RisingDownloader.Skintrim!1.9A1D (CLASSIC)
YandexTrojan.DL.Wintrim.Gen!Pac.2
SentinelOneStatic AI – Malicious PE
FortinetPossibleThreat
AVGWin32:Hrupka-A [Cryp]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Generic.Skintrim.0644D59F?

Generic.Skintrim.0644D59F removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment