Trojan

Trojan.Generic.15331466 removal guide

Malware Removal

The Trojan.Generic.15331466 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.15331466 virus can do?

  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Anomalous file deletion behavior detected (10+)
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Creates a hidden or system file
  • Anomalous binary characteristics

How to determine Trojan.Generic.15331466?


File Info:

name: D233A2411E4E6A2F76DA.mlw
path: /opt/CAPEv2/storage/binaries/2314b973ce558bea8fa1cde27a6c00e6f267d0b58abd5ef045606c99ac401ae6
crc32: BB2864B7
md5: d233a2411e4e6a2f76daa171436a6eda
sha1: 56f177b6582e260bb25712433cfc07f20e81f8bf
sha256: 2314b973ce558bea8fa1cde27a6c00e6f267d0b58abd5ef045606c99ac401ae6
sha512: 88d963af88567402a2a3705ed33c9849aabfd6949a0b9257adb7ffce05c918e6314f87db391b12dd7e8778ce738b1ef889ca655ac61d829ea1607a06be401822
ssdeep: 49152:IKiC/rk62xWNol+5gOsLO66qJ6021cJjLtk4pWGNG5VGFPNqJyoTL:prZ23AbsK6Ro022JjL2WEiVqJZL
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C2C533450756A909E024017D9C832B9A3D67A4657F37AFB7A5CB042C6D38382FD2AF4F
sha3_384: 4fef0033852b41edf597f0d33544c89008452d099f920af25a70b917aa123d7ad740a6c7e8d8b325d1225d6d32b4d35b
ep_bytes: e90afaffff558bec8b4508eb1780f93b
timestamp: 2004-11-11 21:11:30

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Update Package
FileVersion: 3.1
InternalName: SFXCAB.EXE
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: SFXCAB.EXE
ProductName: MSI 3.1
ProductVersion: 3.1
Build Date: 2004/12/06
Applies to: Windows 2000 Service Pack 3, Windows 2000 Service Pack 4, Windows XP, Windows XP Service Pack 1, Windows XP Service Pack 2, Windows 2003
Installation Type: Full
Installer Version: 6.1.22.0
Installer Engine: update.exe
KB Article Number: 884016
Support Link: "http://go.microsoft.com/fwlink/?LinkId=33342"
Package Type: update
Proc. Architecture: x86
Self-Extractor Version: SFXCAB v6.1.6.0
Translation: 0x0000 0x04b0

Trojan.Generic.15331466 also known as:

LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanTrojan.Generic.15331466
FireEyeGeneric.mg.d233a2411e4e6a2f
CylanceUnsafe
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaTrojan:Win32/Sality.05253d8a
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTROJ_GEN.R002H09JN21
AvastWin32:Sality [Inf]
BitDefenderTrojan.Generic.15331466
Ad-AwareTrojan.Generic.15331466
SophosML/PE-A
VIPRETrojan.Win32.Generic!BT
EmsisoftTrojan.Generic.15331466 (B)
GDataWin32.Virus.Patched.L
ArcabitTrojan.Generic.DE9F08A
MicrosoftProgram:Win32/Occamy.AA
Acronissuspicious
ALYacTrojan.Generic.15331466
MAXmalware (ai score=84)
MalwarebytesMalware.Heuristic.1001
APEXMalicious
YandexBackdoor.Zegost!mJq0oKtvTbc
AVGWin32:Sality [Inf]

How to remove Trojan.Generic.15331466?

Trojan.Generic.15331466 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment