Trojan

Trojan-Downloader.Win32.Genome.feel malicious file

Malware Removal

The Trojan-Downloader.Win32.Genome.feel is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Downloader.Win32.Genome.feel virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Attempts to modify proxy settings

Related domains:

z.whorecord.xyz
a.tomx.xyz
dlsw.baidu.com
down5.flashget.com

How to determine Trojan-Downloader.Win32.Genome.feel?


File Info:

crc32: 5E1FE75C
md5: 967b488cefb18945ef9d51be6a03d93d
name: 967B488CEFB18945EF9D51BE6A03D93D.mlw
sha1: 92cbf7fbe5db94abecb6fca80a110299aa2a07c7
sha256: 1dea8961c7b1a16f53faed2892d6e47a5d2ab47d44dd884be1313dee3b483119
sha512: 6c133c95b6c0bf6b404e0b79887fc69733f48e2e956bac4efc19fdb11a238b2cd8a887ef33204ec970ec6630fe02e25131c3379197d4fc069b5f00287c68ec53
ssdeep: 6144:nuDL4Lqb0+5xIwwjhe6F0tp3BNOnOvZ7YpUcUaNQJo95pXCFxWvceWUnng/RoFq:HL1j5F0tpxjmzI6CFxOYUng5oFy
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan-Downloader.Win32.Genome.feel also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005246d51 )
LionicTrojan.Win32.Generic.lwSp
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CylanceUnsafe
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaTrojanDownloader:Win32/Genome.419c9a09
K7GWTrojan ( 005246d51 )
Cybereasonmalicious.be5db9
CyrenW32/S-47c1ea66!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Trojan.Ascii_61_160_232_199-1
KasperskyTrojan-Downloader.Win32.Genome.feel
NANO-AntivirusTrojan.Win32.TrjGen.cvtpkx
TencentWin32.Trojan-downloader.Genome.Htlz
SophosGeneric PUA JC (PUA)
ComodoWorm.Win32.Dropper.RA@1qraug
BitDefenderThetaGen:NN.ZexaF.34266.QqW@aanhp9jb
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.jh
FireEyeGeneric.mg.967b488cefb18945
SentinelOneStatic AI – Malicious PE
JiangminTrojanDownloader.Genome.aiwg
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.18B71DA
MicrosoftTrojan:Win32/Occamy.C1D
GDataWin32.Trojan.PSE.11B5R9D
Acronissuspicious
McAfeeArtemis!967B488CEFB1
MAXmalware (ai score=100)
VBA32TrojanDownloader.Genome
MalwarebytesTrojan.MalPack.FlyStudio
PandaTrj/GdSda.A
RisingTrojan.Generic@ML.97 (RDMK:Y/OMmY25DHLyc6kJI/RfeQ)
YandexTrojan.GenAsa!rkNqCvoox1k
IkarusTrojan.Win32.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Genome.FEEL!tr.dldr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan-Downloader.Win32.Genome.feel?

Trojan-Downloader.Win32.Genome.feel removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment