Trojan

Trojan.Generic.11519189 (file analysis)

Malware Removal

The Trojan.Generic.11519189 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.11519189 virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Reads data out of its own binary image
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Anomalous binary characteristics

Related domains:

www.bing.com
www.uzzf.com

How to determine Trojan.Generic.11519189?


File Info:

crc32: 2EF7DD0F
md5: 2f337a4b6d3d77c7a06c9dd96f92a6d6
name: 2F337A4B6D3D77C7A06C9DD96F92A6D6.mlw
sha1: 7719ed3f345994733b203a6e2223dd382d7f5e41
sha256: 417cb60a71b35cebe84951cdd73dc8763e0402b1f91141473f716b503fa16182
sha512: 382f192c8d7c173bba50934798b135dd8d72beb8c8a1a815d68294fea127e2c00c743b3b640fd6750a0cbb892f6d4ad8f4a5753b82a3ca639aaae2d50f7cb63c
ssdeep: 98304:TvxVF9gXn9TXF+LlXT9rAUX+pf6PNt+95FyeW4PktZgrVE59a:Tv5SB8l5PPQ24xE5g
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Generic.11519189 also known as:

BkavW32.FamVT.StartPage.e.Trojan
K7AntiVirusTrojan ( 0013f6871 )
Elasticmalicious (high confidence)
DrWebTrojan.StartPage.54021
CynetMalicious (score: 100)
ALYacTrojan.Generic.11519189
CylanceUnsafe
K7GWTrojan ( 0013f6871 )
Cybereasonmalicious.b6d3d7
BaiduWinREG.Trojan.StartPage.g
CyrenREG/StartPage
ESET-NOD32REG/StartPage.NAN
APEXMalicious
AvastOther:Malware-gen [Trj]
KasperskyTrojan.Win32.StartPage.balf
BitDefenderTrojan.StartPage.ZZT
NANO-AntivirusTrojan.Win32.Dwn.vrkfz
MicroWorld-eScanTrojan.StartPage.ZZT
SophosGeneric ML PUA (PUA)
ComodoMalware@#2crwnp1inpwxk
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_STARTPAGE_FD050152.UVPM
McAfee-GW-EditionGenericRXFC-VU!BD52D74E774F
FireEyeTrojan.StartPage.ZZT
EmsisoftTrojan.StartPage.ZZT (B)
SentinelOneStatic AI – Suspicious SFX
JiangminTrojan/StartPage.ntj
AviraTR/StartPage.ouwenc
Antiy-AVLTrojan/Generic.ASScript.755A
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ArcabitTrojan.StartPage.ZZT
GDataWin32.Trojan.Startpage.K
AhnLab-V3Win-Trojan/Startpage.117587
McAfeeStartPage-NY!reg
MAXmalware (ai score=81)
VBA32REG.StartPage.NAN
MalwarebytesTrojan.Dropper.SFX
TrendMicro-HouseCallTROJ_STARTPAGE_FD050152.UVPM
RisingTrojan.Win32.WinREG.StartPage.g (CLASSIC)
YandexTrojan.MulDrop!8jyxEYQUob0
IkarusTrojan.Win32.StartPage
MaxSecureWin.MxResIcn.Heur.Gen
FortinetBAT/StartPage.NAN!tr
AVGOther:Malware-gen [Trj]

How to remove Trojan.Generic.11519189?

Trojan.Generic.11519189 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment