Trojan

How to remove “Trojan.Generic.15348919”?

Malware Removal

The Trojan.Generic.15348919 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.15348919 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Trojan.Generic.15348919?


File Info:

name: E2469A068BE03ABC5E07.mlw
path: /opt/CAPEv2/storage/binaries/0e053ab219732394b034544d6536398891a3a2eec7cf00592cb3db8506c8c40a
crc32: E7295725
md5: e2469a068be03abc5e07baeabf8f0260
sha1: a59f97c0fe2b91ac4d3b5021e2bd36c471c4692f
sha256: 0e053ab219732394b034544d6536398891a3a2eec7cf00592cb3db8506c8c40a
sha512: 6ae8d22bd2728e488d4b37b987ab2decee9406f018bfa948119f7abbdeeb59302b8305d3151f815d72ce48963d5c5754c767fc97cbf812303748e9b1902f5f08
ssdeep: 6144:HfWBcwpOATNQr9dnRkcMBIPfdYfirB/qBr9oSR:OKwpVGrbRJMBCFYqB/q3oSR
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18B34122722C8AD53CA1B447A5467850D4C01FCEE5A59DBCE59D828BE39EE3013B1F4BB
sha3_384: b0847cdccd6d4e72017f451c45b9852945d8641056b02eff094a05d8cc64768b410bd0129e3610d129f22ee997494818
ep_bytes: 60be00a042008dbe0070fdff5789e58d
timestamp: 2011-06-08 08:43:55

Version Info:

CompanyName: Quick Heal Technologies (P) Ltd.
FileDescription: Quick Heal AntiMalware
FileVersion: 6.0.0.1
InternalName: asmain.exe
LegalCopyright: © Quick Heal Technologies (P) Ltd. All rights reserved.
OriginalFilename: asmain.exe
ProductName: Quick Heal AntiVirus
ProductVersion: 13.00
Translation: 0x0409 0x04e4

Trojan.Generic.15348919 also known as:

LionicTrojan.Win32.Generic.ljLt
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Panda.1744
CynetMalicious (score: 100)
FireEyeGeneric.mg.e2469a068be03abc
CAT-QuickHealTrojanPWS.Zbot.Y
McAfeePWS-Zbot.gen.ri
ZillyaTrojan.Menti.Win32.25969
SangforTrojan.Win32.Generic.ky
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojan:Win32/Kryptik.43200ce1
K7GWRiskware ( 0015e4f11 )
K7AntiVirusRiskware ( 0015e4f11 )
BitDefenderThetaGen:NN.ZexaF.34212.om1@aql2mhii
VirITTrojan.Win32.Generic.BJWM
CyrenW32/Zbot.DP.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.AAAB
ClamAVWin.Trojan.7177200-1
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Generic.15348919
NANO-AntivirusTrojan.Win32.Panda.ljgqi
SUPERAntiSpywareTrojan.Agent/Gen-SmokeLoader
MicroWorld-eScanTrojan.Generic.15348919
AvastFileRepMalware
TencentMalware.Win32.Gencirc.116e98d4
Ad-AwareTrojan.Generic.15348919
EmsisoftTrojan.Generic.15348919 (B)
ComodoTrojWare.Win32.Kryptik.ZSAA@4mdv0b
VIPRETrojan.Win32.Reveto.D (v)
McAfee-GW-EditionBehavesLike.Win32.Dropper.dc
SophosMal/Generic-R + Mal/Zbot-EZ
IkarusTrojan.Win32.Reveton
GDataTrojan.Generic.15348919
JiangminTrojan/Menti.rgw
WebrootW32.Malware.Gen
AviraTR/Crypt.ULPM.Gen
Antiy-AVLTrojan/Win32.Unknown
ArcabitTrojan.Generic.DEA34B7
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftPWS:Win32/Zbot
SentinelOneStatic AI – Suspicious PE
AhnLab-V3Trojan/Win32.Menti.R20280
Acronissuspicious
VBA32Malware-Cryptor.ImgChk
ALYacTrojan.Generic.15348919
CylanceUnsafe
APEXMalicious
RisingBackdoor.Qakbot!8.C7B (CLOUD)
YandexTrojan.Kryptik!Em7JmYZWxlE
MAXmalware (ai score=100)
MaxSecureTrojan.Malware.2588.susgen
FortinetW32/Zbot.EZ
AVGFileRepMalware
Cybereasonmalicious.68be03
PandaGeneric Malware

How to remove Trojan.Generic.15348919?

Trojan.Generic.15348919 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment