Trojan

How to remove “Trojan.Generic.11431844”?

Malware Removal

The Trojan.Generic.11431844 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.11431844 virus can do?

  • Sample contains Overlay data
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan.Generic.11431844?


File Info:

name: 908343A3A8AFA16C0224.mlw
path: /opt/CAPEv2/storage/binaries/458ead66f95a90aa216ddca25c3ae2fb15412e4b75128f6de06636cc8af4984b
crc32: 89ECCBF2
md5: 908343a3a8afa16c0224a977589b85cb
sha1: 621da68b33e09e227df4e60e3d2fe88b5960728e
sha256: 458ead66f95a90aa216ddca25c3ae2fb15412e4b75128f6de06636cc8af4984b
sha512: 225aa4d5d5ccb0f7905706c5f0a3d9a92b53a1039bbf5a96a1cce6d9913c9140961bfd8a9ba8213168a5dbbd0358a342c277bc7b9511e151b3757a8f9c394b8c
ssdeep: 3072:WcO302yXTVNWSEoktCCLP1JkcLsYCQiEg265prFunutsQjely/1fkXrdDHXQn:WXk8QCLvLsfQN65p8m/UekRza
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T152040151F210F779D1F639F2966EC0A210427C0A6B5A650E79B4FE0244B74E3EED2B1E
sha3_384: 195adaf0f1f5c1add929be42bd8b582800cf6a11cb1e8037dcd8f9e7382b0ed098847701ee39a216c36f35f340bbd014
ep_bytes: 60be00b044008dbe0060fbff57eb0b90
timestamp: 2011-04-14 20:47:45

Version Info:

Comments: HmooDi
CompanyName: HmooDi
FileDescription: HmooDi
LegalCopyright: HmooDi
LegalTrademarks: HmooDi
ProductName: HmooDi
InternalName: HmooDi
OriginalFilename: HmooDi.exe
Translation: 0x0409 0x04b0

Trojan.Generic.11431844 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.VBKrypt.4!c
tehtrisGeneric.Malware
DrWebBackDoor.Bifrost.40
MicroWorld-eScanTrojan.Generic.11431844
ClamAVWin.Trojan.Vbkrypt-1092
FireEyeGeneric.mg.908343a3a8afa16c
McAfeeArtemis!908343A3A8AF
CylanceUnsafe
ZillyaTrojan.VBKrypt.Win32.37034
K7AntiVirusTrojan ( 000009bf1 )
AlibabaTrojan:Win32/VBKrypt.7566e8ae
K7GWTrojan ( 000009bf1 )
Cybereasonmalicious.3a8afa
VirITTrojan.Win32.VBKrypt.CSKL
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32Win32/Bifrose
TrendMicro-HouseCallTSPY_VBKRYPT_CD102F1C.RDXN
CynetMalicious (score: 100)
KasperskyTrojan.Win32.VBKrypt.cskl
BitDefenderTrojan.Generic.11431844
NANO-AntivirusTrojan.Win32.VBKrypt.eafwr
SUPERAntiSpywareTrojan.Agent/Gen-Kacer
AvastWin32:Adware-gen [Adw]
TencentWin32.Trojan.Vbkrypt.Zmhl
Ad-AwareTrojan.Generic.11431844
EmsisoftTrojan.Generic.11431844 (B)
ComodoMalware@#2gvlg3pqzkc2y
VIPRETrojan.Generic.11431844
TrendMicroTSPY_VBKRYPT_CD102F1C.RDXN
McAfee-GW-EditionArtemis!Trojan
Trapminesuspicious.low.ml.score
SophosMal/Generic-S
IkarusTrojan-Dropper.Win32.VB
GDataTrojan.Generic.11431844
JiangminTrojan/VBKrypt.bhvl
Antiy-AVLTrojan/Generic.ASMalwS.39
ArcabitTrojan.Generic.DAE6FA4
ZoneAlarmPacked.Multi.MultiPacked.gen
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
AhnLab-V3Trojan/Win32.VBKrypt.C92839
Acronissuspicious
ALYacTrojan.Generic.11431844
MAXmalware (ai score=99)
MalwarebytesMalware.Heuristic.1003
APEXMalicious
RisingMalware.Undefined!8.C (TFE:1:nD79taL5RwU)
YandexTrojan.VBKrypt!J/hQBMrB6zU
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/VBKrypt.CSKL!tr
AVGWin32:Adware-gen [Adw]
PandaGeneric Malware
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Generic.11431844?

Trojan.Generic.11431844 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment