Trojan

Trojan.Generic.1957168 malicious file

Malware Removal

The Trojan.Generic.1957168 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.1957168 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Generic.1957168?


File Info:

crc32: 5E5AB42A
md5: 072038f87cdcf84d6d9db409546877db
name: 072038F87CDCF84D6D9DB409546877DB.mlw
sha1: 22472546fe2e97e5204d39d9179bde00e6da7c33
sha256: 85235702bf8641fbb156496b8337b4472beb91cadaa02be37a3791d8877e12e3
sha512: 794821c44c9647ed8313439dbd9d2e240acc267e60189b78ba6029acf5187a0fd6a50d1cd2c33610893812e8a89470c7fe8e780fecc1e73fd992c16a661d2a45
ssdeep: 3072:eZuO97Mu9bNVqhdeutwaMAQK78iNtoAdmWzD5zKFmjSw3atJfo7z:IfpVqhkutNZpgmDtKFmjSw3atJwn
type: PE32 executable (GUI) Intel 80386, for MS Windows, PECompact2 compressed

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: Copyright Panda Inc.
InternalName: AutoFire
FileVersion: 2.05.0002
CompanyName: Panda Inc.
LegalTrademarks: AutoFire
ProductName: AutoFire
ProductVersion: 2.05.0002
OriginalFilename: AutoFire.exe

Trojan.Generic.1957168 also known as:

BkavW32.AIDetect.malware2
ALYacTrojan.Generic.1957168
CylanceUnsafe
ZillyaBackdoor.Feardoor.Win32.36
AlibabaBackdoor:Win32/Feardoor.82eeba38
Cybereasonmalicious.87cdcf
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastFileRepMalware
KasperskyBackdoor.Win32.Feardoor.l
BitDefenderTrojan.Generic.1957168
NANO-AntivirusTrojan.Win32.Feardoor.jfca
ViRobotBackdoor.Win32.A.Feardoor.116736.A
MicroWorld-eScanTrojan.Generic.1957168
TencentWin32.Backdoor.Feardoor.Dkq
Ad-AwareTrojan.Generic.1957168
SophosGeneric PUA CC (PUA)
ComodoBackdoor@#26cpijhsr3y59
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0PK421
McAfee-GW-EditionGenericRXHM-ZR!0DE046E59D23
FireEyeTrojan.Generic.1957168
EmsisoftTrojan.Generic.1957168 (B)
SentinelOneStatic AI – Suspicious PE
JiangminBackdoor/Feardoor.cq
WebrootW32.Malware.Gen
eGambitGeneric.Malware
Antiy-AVLTrojan[Backdoor]/Win32.Feardoor
MicrosoftTrojan:Win32/Occamy.C85
ArcabitTrojan.Generic.D1DDD30
ZoneAlarmBackdoor.Win32.Feardoor.l
GDataTrojan.Generic.1957168
McAfeeArtemis!072038F87CDC
MAXmalware (ai score=99)
VBA32Backdoor.Feardoor
MalwarebytesMalware.Heuristic.1001
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0PK421
YandexBackdoor.Feardoor!UZmzvfcw9AA
IkarusBackdoor.Win32.Feardoor
MaxSecureTrojan.Malware.155336.susgen
FortinetW32/Feardoor.L!tr.bdr
AVGFileRepMalware

How to remove Trojan.Generic.1957168?

Trojan.Generic.1957168 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment