Trojan

Trojan.Generic.20017892 removal guide

Malware Removal

The Trojan.Generic.20017892 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.20017892 virus can do?

  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Generic.20017892?


File Info:

crc32: DD01120A
md5: e042c1f90be0a15afdfae831dcae474c
name: E042C1F90BE0A15AFDFAE831DCAE474C.mlw
sha1: 9407d85f3dfd75787b3b44b5f98e65587e9cb55a
sha256: 038f09b7e272dd124fbe497599160039ac42639f6cf082a947e562f7e05491aa
sha512: da513f476b5d9c4e6178253b5967ac27923202fa738958a55383c98da63c6f1e7b52526132016f8853f9049f32c391355cf26b321dd6f170e070ec55a89776ff
ssdeep: 49152:9h+IgChlqq6wBnseL+M65GcY0s8CrkJjWDQr/DG2WCa3tXbUq:9EIDlqq6MLR65A0sjkJKmaCa9LUq
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Runtime Engine Copyright xa9 2009 Indigo Rose Corporation (www.indigorose.com)
InternalName: ams_launch
FileVersion: 7.5.1006.0
CompanyName:
PrivateBuild:
LegalTrademarks: AutoPlay Media Studio is a Trademark of Indigo Rose Corporation
Comments: Created with AutoPlay Media Studio
ProductName: AutoPlay Media Studio Launcher
SpecialBuild:
ProductVersion: 7.5.1006.0
FileDescription: AutoPlay Application
OriginalFilename: ams_launch.exe
Translation: 0x0409 0x04b0

Trojan.Generic.20017892 also known as:

K7AntiVirusUnwanted-Program ( 005899f41 )
ALYacTrojan.Generic.20017892
BitDefenderTrojan.Generic.20017892
K7GWUnwanted-Program ( 005899f41 )
Cybereasonmalicious.90be0a
ESET-NOD32Win32/HackTool.Patcher.GY potentially unsafe
APEXMalicious
MicroWorld-eScanTrojan.Generic.20017892
McAfee-GW-EditionBehavesLike.Win32.BadFile.vc
FireEyeTrojan.Generic.20017892
EmsisoftTrojan.Generic.20017892 (B)
GDataTrojan.Generic.20017892
McAfeeArtemis!E042C1F90BE0
MAXmalware (ai score=89)
VBA32BScope.Trojan.Occamy
FortinetRiskware/Patcher

How to remove Trojan.Generic.20017892?

Trojan.Generic.20017892 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment