Trojan

Trojan.Generic.11545728 removal tips

Malware Removal

The Trojan.Generic.11545728 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.11545728 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Expresses interest in specific running processes
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Queries information on disks, possibly for anti-virtualization
  • Checks for the presence of known windows from debuggers and forensic tools
  • Tries to unhook or modify Windows functions monitored by Cuckoo
  • The following process appear to have been packed with Themida: Checksum.exe
  • Checks for the presence of known devices from debuggers and forensic tools
  • Detects the presence of Wine emulator via registry key
  • Detects VirtualBox through the presence of a registry key
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
mysys.dyndns.info

How to determine Trojan.Generic.11545728?


File Info:

crc32: 34192D67
md5: ddd6b6ae165a8bc7ad361f06f4ab6c0d
name: DDD6B6AE165A8BC7AD361F06F4AB6C0D.mlw
sha1: 251909d822c7fc7a1327ae87d250e81e710eb5f4
sha256: cf0bce1911da936b73e6c1e7c7765f7bd8ce1931dc10fba5e7d281fb9d900cfe
sha512: 2190690896439a5caae97a6ee273c9d14e9f8ee857fdfe74485b62641283f4268d33523bbeabf52b60eb5a2393614e82359ddddc95d0f04fee122eebc048e4e9
ssdeep: 196608:sGxKccjdJuf4XGw+BSQhwN7odlr1mwX8gbWGvSgj5LhMf+I:sG4cqdJug8BbqN7AlrpbZv1hhH
type: MS-DOS executable, MZ for MS-DOS

Version Info:

LegalCopyright: Alliantech
InternalName: Titanium.exe
FileVersion: 6,1,0,0
CompanyName: Alliantech
ProductName: Ecm Titanium
ProductVersion: 6,1,0,0
Translation: 0x0000 0x04e4

Trojan.Generic.11545728 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0055e3f11 )
DrWebTrojan.Swrort.1
CynetMalicious (score: 100)
ALYacTrojan.Generic.11545728
CylanceUnsafe
SangforTrojan.Win32.Generic.8
K7GWTrojan ( 0055e3f11 )
Cybereasonmalicious.e165a8
SymantecML.Attribute.HighConfidence
ESET-NOD32multiple detections
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Generic.11545728
NANO-AntivirusTrojan.Win32.PEF.dfupmz
MicroWorld-eScanTrojan.Generic.11545728
TencentWin32.Trojan.Dropper.Wweg
Ad-AwareTrojan.Generic.11545728
SophosGeneric ML PUA (PUA)
ComodoTrojWare.Win32.CoinMiner.IEGT@57p1bc
BitDefenderThetaGen:NN.ZexaF.34294.@F3@aKE54Wei
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.wc
FireEyeGeneric.mg.ddd6b6ae165a8bc7
EmsisoftTrojan.Generic.11545728 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.Gen
AviraTR/Dropper.Gen
eGambitUnsafe.AI_Score_99%
KingsoftWin32.Heur.KVMH008.a.(kcloud)
MicrosoftTrojan:Win32/Swrort.A
GDataTrojan.Generic.11545728
McAfeeArtemis!DDD6B6AE165A
MAXmalware (ai score=83)
PandaTrj/OCJ.F
IkarusTrojan.Win32.Rozena
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.Generic.11545728?

Trojan.Generic.11545728 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment