Trojan

Trojan.Generic.16445530 (file analysis)

Malware Removal

The Trojan.Generic.16445530 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.16445530 virus can do?

  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Trojan.Generic.16445530?


File Info:

name: 5A876BCC20F62B455A47.mlw
path: /opt/CAPEv2/storage/binaries/371f0c8d2162bd83721d95c7dd306542974a8ef64b3025b1afc34f75307afa08
crc32: 62EDA68D
md5: 5a876bcc20f62b455a47467b799f7e5e
sha1: 734cc78d53c766567667839fd6acd7df0fb9e7d5
sha256: 371f0c8d2162bd83721d95c7dd306542974a8ef64b3025b1afc34f75307afa08
sha512: 24252ebebbfa5748de7552845a91b4ebd18bbc82aebc49d28f69793548077573afc35201644445f95d07058f13c34dd0f697012a98304fcde494001ee5f0d6fb
ssdeep: 1536:uq7Iy+1LeUs8tFLWUY6nakqYf0roi+2qJ6pU:FG17PDyT6nNd8r02qJ6pU
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T104C3E643A2C641F1DA55263028BE6775EA37E5BE5F309BD35358DE2D2A23041BC3638B
sha3_384: 3f003e570ecb1d5e505e240a2ddb0c02af083315fed74e83b112b0e721760fef1191379ff40591a9f73a16a314f1e9f7
ep_bytes: 558bec6aff68300b410068f6d9400064
timestamp: 2001-07-23 05:50:29

Version Info:

CompanyName:
FileDescription: SetUp Microsoft 基础类应用程序
FileVersion: 1, 0, 0, 1
InternalName: SetUp
LegalCopyright: 版权所有 (C) 2006
LegalTrademarks:
OriginalFilename: SetUp.EXE
ProductName: SetUp 应用程序
ProductVersion: 1, 0, 0, 1
Translation: 0x0804 0x04b0

Trojan.Generic.16445530 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebBackDoor.Bifrost
MicroWorld-eScanTrojan.Generic.16445530
FireEyeTrojan.Generic.16445530
McAfeeArtemis!5A876BCC20F6
CylanceUnsafe
ZillyaTrojan.Agent.Win32.355932
CrowdStrikewin/malicious_confidence_70% (W)
CyrenW32/SuspPack.FW.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
BitDefenderTrojan.Generic.16445530
AvastWin32:Virtu-F [Inf]
Ad-AwareTrojan.Generic.16445530
SophosGeneric ML PUA (PUA)
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Virus.ct
EmsisoftTrojan.Generic.16445530 (B)
SentinelOneStatic AI – Suspicious PE
GDataTrojan.Generic.16445530
JiangminBackdoor.Bifrose.bfu
WebrootW32.Worm.Gen
MAXmalware (ai score=89)
GridinsoftRansom.Win32.Wacatac.sa
ViRobotTrojan.Win32.Z.Bifrose.122880.A
MicrosoftPWS:Win32/Zbot!ml
VBA32BScope.Backdoor.Bifrose
ALYacTrojan.Generic.16445530
TrendMicro-HouseCallTROJ_GEN.R002H0CL721
RisingTrojan.Generic@ML.85 (RDML:EksCPhlLsHtimRxYI3IG1A)
YandexBackDoor.Bifrost!Dvh/xJZM0lM
FortinetW32/CoinMiner.F
AVGWin32:Virtu-F [Inf]
Cybereasonmalicious.c20f62

How to remove Trojan.Generic.16445530?

Trojan.Generic.16445530 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment