Trojan

How to remove “Trojan.Generic.15596559”?

Malware Removal

The Trojan.Generic.15596559 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.15596559 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Starts servers listening on 127.0.0.1:0
  • Reads data out of its own binary image
  • Performs some HTTP requests
  • Steals private information from local Internet browsers
  • Harvests credentials from local FTP client softwares
  • Harvests information related to installed instant messenger clients

Related domains:

redirector.gvt1.com
r4—sn-4g5ednss.gvt1.com

How to determine Trojan.Generic.15596559?


File Info:

crc32: F75BD66D
md5: 018647c239c9e23a05e48aedcd35a311
name: 2.exe
sha1: e1769d5541dc36bb3e1efd1338c08998d76c75e4
sha256: 658dbee429915b938e7672c38dd7206939358dbb511290fd8df6e1a0bf35df40
sha512: 2010fbe4546b157c319ecec5aa862249a3ef2354daac224857e51e5ba5cf31b1418587424fee7bed64cf8657ee15bcdff73b81fc13c676e89ce0d35cec0a6576
ssdeep: 3072:LA1wctAHKZRX9k8KvdoItwUeQzpnGlRuu4KXIzPCyZXK0lNOzzzzzYZt1xrWfeM:M1ltAHKZRX9YmuVeopnGh4zRZ/FZRdM
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

0: [No Data]

Trojan.Generic.15596559 also known as:

MicroWorld-eScanTrojan.Generic.15596559
FireEyeGeneric.mg.018647c239c9e23a
McAfeeGenericRXFM-ZK!018647C239C9
MalwarebytesTrojan.Downloader.CH
ZillyaTrojan.Agent.Win32.356360
SangforMalware
K7AntiVirusSpyware ( 0055e3ec1 )
BitDefenderTrojan.Generic.15596559
K7GWSpyware ( 0055e3ec1 )
Invinceaheuristic
F-ProtW32/A-43f94793!Eldorado
SymantecSMG.Heur!gen
APEXMalicious
AvastMSIL:KillAV-B [Trj]
ClamAVWin.Trojan.Generic-6295774-0
GDataMSIL.Trojan-Spy.Keylogger.I
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojanDownloader:MSIL/Genmaldow.ffee5f25
NANO-AntivirusTrojan.Win32.Agent.dzuroz
AegisLabTrojan.Win32.Generic.lLFV
RisingBackdoor.MSIL.Bladabindi!1.9E49 (CLASSIC)
Endgamemalicious (high confidence)
EmsisoftTrojan.Generic.15596559 (B)
F-SecureTrojan.TR/ATRAPS.Gen
DrWebTrojan.PWS.Siggen1.45539
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_TOAUTA_EK2501E9.UVPM
McAfee-GW-EditionGenericRXFM-ZK!018647C239C9
Trapminemalicious.high.ml.score
SophosMal/MSIL-GM
SentinelOneDFI – Malicious PE
CyrenW32/A-43f94793!Eldorado
JiangminTrojan/Generic.bbumf
WebrootW32.Malware.Gen
AviraTR/ATRAPS.Gen
eGambitRAT.VirusRat
Antiy-AVLTrojan/Win32.Unknown
MicrosoftTrojanDownloader:MSIL/Genmaldow.AE!bit
ArcabitTrojan.Generic.DEDFC0F
SUPERAntiSpywareTrojan.Agent/Gen-MSIL
ZoneAlarmHEUR:Trojan.Win32.Generic
AhnLab-V3Trojan/Win32.Spnr.R65861
VBA32TScope.Trojan.MSIL
ALYacTrojan.Generic.15596559
MAXmalware (ai score=80)
Ad-AwareTrojan.Generic.15596559
CylanceUnsafe
ESET-NOD32MSIL/Spy.Agent.QN
TrendMicro-HouseCallTROJ_TOAUTA_EK2501E9.UVPM
TencentMalware.Win32.Gencirc.10b32d4e
YandexTrojan.Agent!uQByzeHmSCY
IkarusWorm.Win32.Msil
FortinetMSIL/SpyPSW.AVQ!tr
BitDefenderThetaGen:NN.ZemsilF.34108.lm1@aiRVIRk
AVGMSIL:KillAV-B [Trj]
Cybereasonmalicious.239c9e
Paloaltogeneric.ml
Qihoo-360Generic/Trojan.5b2

How to remove Trojan.Generic.15596559?

Trojan.Generic.15596559 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment