Trojan

Trojan.Generic.107949 malicious file

Malware Removal

The Trojan.Generic.107949 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.107949 virus can do?

  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan.Generic.107949?


File Info:

name: DDAA932192D0A50F6695.mlw
path: /opt/CAPEv2/storage/binaries/2419ee07fdc147d3c70e3746c4fbdda0d04062a89d750777fb4109d530f65487
crc32: 55BEBC22
md5: ddaa932192d0a50f6695eec09779d9dc
sha1: 6a13a7d7df54ec3eed84c341014b8d355c1238e5
sha256: 2419ee07fdc147d3c70e3746c4fbdda0d04062a89d750777fb4109d530f65487
sha512: 8efea429c146969011751fc8a05ca995c494d22aa3741ed7d97738ba3954d4e1e23289688481fb16d0eb3daee8083040d487ef86a5d04f1d5350c9c7291945db
ssdeep: 12288:R1KmSyxZhL9a9HfYnH3jVNsUoPmpcG27t6QJ2zdcdt:R8cxzL9agH3rpZI6QJh/
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T133E47D62F2A18837C0732A799C0B57E5AC36FE502E2899473BF51D4CAF3975079292D3
sha3_384: 435e44c9e5222f16cd79cb01cc685f3151d8de0fd519441a2e47f8ff44936d8288dcce1e5581a5d1faafd8342a46e38e
ep_bytes: 558bec83c4f0b8a0a34800e854c5f7ff
timestamp: 1992-06-19 22:22:17

Version Info:

CompanyName: CrAcKeR
FileDescription: Yahoo! Password Cracker
FileVersion: 1.0.0.0
InternalName:
LegalCopyright: Copyright ©2001 CrAcKeR
LegalTrademarks:
OriginalFilename: UltraCracker
ProductName:
ProductVersion: 1.0.0.0
Comments: Yahoo! UltraCracker
Translation: 0x0409 0x04e4

Trojan.Generic.107949 also known as:

LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanTrojan.Generic.107949
FireEyeTrojan.Generic.107949
ALYacTrojan.Generic.107949
CylanceUnsafe
ZillyaTrojan.Agent.Win32.129667
AlibabaTrojan:Win32/MalwareF.3f67713b
Cybereasonmalicious.192d0a
VirITTrojan.Win32.Agent2.CJSR
CyrenW32/Risk.IWMU-1103
SymantecTrojan Horse
BitDefenderTrojan.Generic.107949
NANO-AntivirusTrojan.Win32.GenericL.bcibbh
TencentWin32.Trojan.Spnr.Wvaw
EmsisoftTrojan.Generic.107949 (B)
ComodoMalware@#2i1ft88rsmefc
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGeneric.bop
SophosMal/Generic-S + Mal/Generic-L
AviraSPR/YahooCracker
Antiy-AVLTrojan/Generic.ASMalwS.865856
KingsoftWin32.Troj.Generic.v.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataTrojan.Generic.107949
McAfeeGeneric.bop
APEXMalicious
RisingTrojan.Win32.Generic.125B113D (C64:YzY0Ohe/HSScejyB)
eGambitGeneric.Malware
FortinetRiskware/Yahocrack
PandaGeneric Malware

How to remove Trojan.Generic.107949?

Trojan.Generic.107949 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment