Trojan

How to remove “Trojan.Generic.20470819”?

Malware Removal

The Trojan.Generic.20470819 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.20470819 virus can do?

  • At least one IP Address, Domain, or File Name was found in a crypto call
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Uses Windows utilities for basic functionality
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself

How to determine Trojan.Generic.20470819?


File Info:

crc32: 156290C7
md5: c141c10010ebdb29e2f7a4ecb4f4812b
name: C141C10010EBDB29E2F7A4ECB4F4812B.mlw
sha1: 1537ed119ce1a4512be33132d7a8b352247f4113
sha256: 4eb7178ae13cf8d4c10829cb9b2a4a9f15435fe3c05f4d91673d4f07be04023a
sha512: 9fc6306e1a45198cc9afb1b57cb60c3873c6d522b7f95b84a79b1dedaaceac597cb42c48e7ea44e4a25de11369aa2440f8d77f0d08c37b7d880a4d6cad1c6a82
ssdeep: 12288:DBw4tn8y3AGmEvX+3IdpvX5E6opcLyXTHXj0XknvPt9s7H:tFtNfmEvX+i/hopIyDz0XGvo
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

Translation: 0x0809 0x04b0

Trojan.Generic.20470819 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0050627a1 )
DrWebTrojan.Encoder.7161
CynetMalicious (score: 100)
CAT-QuickHealRansom.Autoit.Stampado.A
ALYacTrojan.Generic.20470819
CylanceUnsafe
K7GWTrojan ( 0050627a1 )
Cybereasonmalicious.010ebd
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Filecoder.Philadelphia.G
APEXMalicious
AvastINF:AutoRun-BI [Wrm]
KasperskyTrojan-Ransom.Win32.Blocker.jxjt
BitDefenderTrojan.Generic.20470819
NANO-AntivirusTrojan.Script.AuVir.ekpekr
MicroWorld-eScanTrojan.Generic.20470819
TencentWin32.Trojan.Blocker.Svgr
Ad-AwareTrojan.Generic.20470819
SophosML/PE-A + Troj/Stampado-A
BitDefenderThetaAI:Packer.618F1AC817
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_STAMPADO.F117BK
McAfee-GW-EditionBehavesLike.Win32.TrojanAitInject.jc
FireEyeTrojan.Generic.20470819
EmsisoftTrojan.Generic.20470819 (B)
JiangminExploit.BypassUAC.bir
AviraDR/AutoIt.Gen
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftRansom:Win32/Stampado.A
ZoneAlarmHEUR:Worm.Win32.Generic
GDataTrojan.Generic.20470819
AhnLab-V3Trojan/Win32.Blocker.C1846041
McAfeeArtemis!C141C10010EB
MAXmalware (ai score=85)
MalwarebytesMalware.AI.4175174466
PandaTrj/CI.A
TrendMicro-HouseCallRansom_STAMPADO.F117BK
RisingRansom.Philadelphia/Autoit!1.BA48 (CLASSIC)
YandexTrojan.Agent!4VJlpv24bBY
IkarusWorm.Win32.Filecoder
FortinetAutoIt/Philadelphia.E!tr
AVGINF:AutoRun-BI [Wrm]
Paloaltogeneric.ml

How to remove Trojan.Generic.20470819?

Trojan.Generic.20470819 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment