Trojan

Trojan.Generic.11482856 (file analysis)

Malware Removal

The Trojan.Generic.11482856 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.11482856 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • Unconventionial language used in binary resources: Chinese (Traditional)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Installs itself for autorun at Windows startup

How to determine Trojan.Generic.11482856?


File Info:

name: 6B25D6DA56FC978119A3.mlw
path: /opt/CAPEv2/storage/binaries/feea382653fc3fffb2d4a4c23b6015f2c91264f5ef04f30ee08197a64b689555
crc32: 3A078F34
md5: 6b25d6da56fc978119a39137557b6486
sha1: 3d0c6db626abc08f0badacf519f81138c92c7898
sha256: feea382653fc3fffb2d4a4c23b6015f2c91264f5ef04f30ee08197a64b689555
sha512: 6f5d14599862007ae9c44de921860666df3750b06e8a6ef66e235220e18a5bfffbed9285a856935131e7c46e794cfc2ae2bd8029643c32d980197c5681d48302
ssdeep: 24576:ufaSTSmiqtUoGmJhRYB6PtSIb05v8reb/+EHuj8wDVS9lauzb4H531RZOGFdIAYF:ufaSTSXqtRGeQB6Vw5t/1Huj5DVSyuwE
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1415533A2DF024438C0DCC6B7197B19D610229D3399DBEF1B352A66E2BD38F56A706C16
sha3_384: 9613a72c12deafc900900170bdd96b6260c5245543cec16c0a3efb55eb9f475a14212e1e1e46fb7ca09d4cd5cbdeddf8
ep_bytes: 60be00b066008dbe0060d9ffc787008f
timestamp: 2010-04-24 18:02:18

Version Info:

CompanyName: .
FileDescription: Windows 工作管理員
FileVersion: 9.9.9.9
InternalName: Windows 檔案總管
LegalCopyright: (c) 2005-2009 by , Inc. All rights reserved.
OriginalFilename: explorer.exe
ProductName:
ProductVersion: 9.9.9.9
Translation: 0x0404 0x03b6

Trojan.Generic.11482856 also known as:

LionicTrojan.Win32.Generic.4!c
FireEyeTrojan.Generic.11482856
McAfeeArtemis!6B25D6DA56FC
CylanceUnsafe
VIPRETrojan.Win32.Generic!SB.0
SangforTrojan.Win32.Generic.1
AlibabaTrojanDownloader:Win32/FakeAV.d2d7c759
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
VirITTrojan.Win32.DownLoader11.BLIA
SymantecTrojan.ADH
ESET-NOD32a variant of Win32/FoxyPeer.A potentially unsafe
Paloaltogeneric.ml
BitDefenderTrojan.Generic.11482856
NANO-AntivirusTrojan.Win32.Dwn.dtuixw
SUPERAntiSpywareTrojan.Agent/Gen-Downloader
MicroWorld-eScanTrojan.Generic.11482856
AvastWin32:Malware-gen
Ad-AwareTrojan.Generic.11482856
SophosGeneric PUA DN (PUA)
DrWebTrojan.DownLoader11.25220
ZillyaTrojan.Obfuscated.Win32.51535
TrendMicroTROJ_SPNR.07HH14
McAfee-GW-EditionBehavesLike.Win32.Dropper.tc
EmsisoftTrojan.Generic.11482856 (B)
SentinelOneStatic AI – Suspicious PE
GDataTrojan.Generic.11482856
JiangminTrojan/Yakes.hps
WebrootW32.Trojan.Gen
MAXmalware (ai score=99)
Antiy-AVLTrojan/Generic.ASMalwS.1AE7CCA
MicrosoftTrojan:Win32/Occamy.CFE
ALYacTrojan.Generic.11482856
VBA32Trojan.Downloader
TrendMicro-HouseCallTROJ_SPNR.07HH14
RisingTrojan.Bitrep!8.F596 (CLOUD)
YandexTrojan.DownLoader!5w7Rf5LKOrg
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Malware-gen
Cybereasonmalicious.a56fc9

How to remove Trojan.Generic.11482856?

Trojan.Generic.11482856 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment