Trojan

Trojan.Generic.20681017 (file analysis)

Malware Removal

The Trojan.Generic.20681017 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.20681017 virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • Authenticode signature is invalid

How to determine Trojan.Generic.20681017?


File Info:

name: 33C7E054A6FCF68D9277.mlw
path: /opt/CAPEv2/storage/binaries/0007f9076a71464a2cb2f5de8f83fa2cdd071da452302c432b8774880d83c650
crc32: E7B377FB
md5: 33c7e054a6fcf68d9277bc44dcdff495
sha1: 25034845d0d1abeb847a8a69011c6ad432663718
sha256: 0007f9076a71464a2cb2f5de8f83fa2cdd071da452302c432b8774880d83c650
sha512: 7b178116896f6f84388c9d9f4e024ec741e8f3462db64df67286d4aa361ce434dcc9844d088cd0dbb7d33d4cba4a092be4022edf3bfb8124308ccebadf803d08
ssdeep: 192:829ZgZNuzcPXWlI6wvCQQaLS4Twv6ujZ1nAgwc4A35gMnvmAI:829swzcQI6IS4TwtiA35gqm
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1DA031932F40A137FCAC011B4425E7AA7916E1F219F7C17CB95AF6DA23C143B919319A7
sha3_384: 1595f82fc0c07ea69701d51b98ce2ce20e34172c527142eb1e1e39476d820a313c905254250e0d0d411cf09f1fe3f914
ep_bytes: 6a286878120001e8a901000033ff57ff
timestamp: 2008-12-07 04:12:59

Version Info:

0: [No Data]

Trojan.Generic.20681017 also known as:

LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Generic.20681017
McAfeeArtemis!33C7E054A6FC
CylanceUnsafe
VIPRETrojan.Generic.20681017
SangforRiskware.Win32.Agent.ky
AlibabaTrojan:Win32/Symmi.b421d404
CrowdStrikewin/malicious_confidence_70% (D)
SymantecML.Attribute.HighConfidence
Paloaltogeneric.ml
ClamAVWin.Virus.Fileinfector-6888061-0
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderTrojan.Generic.20681017
AvastFileRepMetagen [Trj]
RisingTrojan.Generic@AI.82 (RDML:58t9R5pixdEyCtj9S3pK+w)
Ad-AwareTrojan.Generic.20681017
EmsisoftTrojan.Generic.20681017 (B)
McAfee-GW-EditionBehavesLike.Win32.VBObfus.nz
SentinelOneStatic AI – Malicious PE
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.33c7e054a6fcf68d
SophosGeneric PUA CF (PUA)
GDataTrojan.Generic.20681017
AviraTR/Symmi.zbpm
ArcabitTrojan.Generic.D13B9139
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
ALYacTrojan.Generic.20681017
MalwarebytesMalware.Heuristic.1001
APEXMalicious
YandexTrojan.Agent!pAUPDDGQfy4
MAXmalware (ai score=80)
AVGFileRepMetagen [Trj]

How to remove Trojan.Generic.20681017?

Trojan.Generic.20681017 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment