Trojan

Should I remove “Trojan.Generic.20478629”?

Malware Removal

The Trojan.Generic.20478629 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.20478629 virus can do?

  • Executable code extraction
  • Compression (or decompression)
  • Creates RWX memory
  • Mimics the system’s user agent string for its own requests
  • Exhibits behavior characteristic of Locky ransomware

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Generic.20478629?


File Info:

crc32: 4B6208CD
md5: c7cc5b7b72aab23911bc15cc2e7c2068
name: C7CC5B7B72AAB23911BC15CC2E7C2068.mlw
sha1: c02943a79e25264bfaaa4eb97ad65d628d82dc4f
sha256: b5250565b23dc92a3ddb41319ff3c4d88fc58da168719c7a91451fae0bbe0f4c
sha512: 5c6e187550a60f5bf3bd929fb63f1249140efb225a063cbd651bf482df8adf00c9fbb28195a60b5c0d702a93428d0aca70cbfe618e0b5c0ee38962e229d3adfb
ssdeep: 6144:fWHIXpYWGCgD2LHBnga2Ok/h8k8RN3UhCj6c9FUF/mjcUxBHEUGDkBj5gJu9xMk:fBYWWD2LhgeUfAy/BU/HnHtEOxMkEPs
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xfffd 1998-2015 StarForce Technologies Ltd.
InternalName: ASPack
FileVersion: 2.38.7.8
CompanyName: StarForce Technologies Ltd.
LegalTrademarks: StarForce Technologies Ltd.
ProductName: ASPack
ProductVersion: 2.38.7.8
FileDescription: ASPack compressor
OriginalFilename: ASPACK.EXE
Translation: 0x0409 0x04b0

Trojan.Generic.20478629 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.10121
CynetMalicious (score: 100)
ALYacTrojan.Generic.20478629
CylanceUnsafe
ZillyaTrojan.Locky.Win32.2762
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Locky.f3dc7dea
Cybereasonmalicious.b72aab
CyrenW32/Trojan.JIGK-6189
SymantecRansom.TeslaCrypt
ESET-NOD32a variant of Win32/Kryptik.FOYV
APEXMalicious
AvastWin32:Rootkit-gen [Rtk]
KasperskyTrojan-Ransom.Win32.Locky.xni
BitDefenderTrojan.Generic.20478629
NANO-AntivirusTrojan.Win32.Locky.elyynb
MicroWorld-eScanTrojan.Generic.20478629
TencentMalware.Win32.Gencirc.10bbb322
Ad-AwareTrojan.Generic.20478629
SophosMal/Generic-S + Mal/Kryptik-DC
F-SecureHeuristic.HEUR/AGEN.1110230
BitDefenderThetaGen:NN.ZexaF.34790.Du0@ayL9oTgi
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_LOCKY.DLDTASR
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.c7cc5b7b72aab239
EmsisoftTrojan.Generic.20478629 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Locky.dgu
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1110230
eGambitGeneric.Malware
Antiy-AVLTrojan/Generic.ASMalwS.1E9835F
MicrosoftTrojan:Win32/Dynamer!rfn
ArcabitTrojan.Generic.D1387AA5
ZoneAlarmTrojan-Ransom.Win32.Locky.xni
GDataTrojan.Generic.20478629
AhnLab-V3Trojan/Win32.Locky.R195732
Acronissuspicious
McAfeeArtemis!C7CC5B7B72AA
MAXmalware (ai score=100)
VBA32BScope.Trojan-Ransom.Crypren
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/CI.A
TrendMicro-HouseCallRansom_LOCKY.DLDTASR
RisingTrojan.Generic@ML.100 (RDML:otT0lZ4Kchhj9+8uqEfHFA)
YandexTrojan.GenAsa!tjhH9eeZJuI
IkarusTrojan-Ransom.GandCrab
FortinetW32/Malicious_Behavior.VEX
AVGWin32:Rootkit-gen [Rtk]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Locky.HgIASOcA

How to remove Trojan.Generic.20478629?

Trojan.Generic.20478629 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment