Trojan

What is “Trojan.Generic.20976317”?

Malware Removal

The Trojan.Generic.20976317 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.20976317 virus can do?

  • Creates RWX memory
  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Sniffs keystrokes
  • Anomalous binary characteristics

How to determine Trojan.Generic.20976317?


File Info:

crc32: 65C2DEAB
md5: 44c39c7aef714f574afc9fd6923fa368
name: Rome-Total-War-Alexander-V1.91-Trainer-3-MrAntiFun.EXE
sha1: 417c036a782baf644de4d672b8b9bf70b844e20d
sha256: 65f0c1f1dfdf24fe90dcd4d1f97d66d7fdb35331d27e7a8b61061cc1e90dd5b6
sha512: a09cfe0eaf84857011bcde6f1d1a5d0c1852dddab72fe979404f2090439a4e470f51604ad45e862ca7a965959474b1c50029419833572e0c6d3bbf69f6bc3111
ssdeep: 98304:LH0L7VtmWTy5OwsyOBqFY+pWUkU0rLm8qeuPcXi2ub:j0/5Ty5PXtNWpfyZaiBb
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Generic.20976317 also known as:

MicroWorld-eScanTrojan.Generic.20976317
CAT-QuickHealTrojan.IGENERIC
McAfeePUP-XAR-GC
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
K7GWUnwanted-Program ( 004ba1a41 )
K7AntiVirusUnwanted-Program ( 004ba1a41 )
TrendMicroTROJ_GEN.R00XC0OD717
SymantecTrojan.Gen.2
ZonerTrojan.Cheatengine
TrendMicro-HouseCallTROJ_GEN.R00XC0OD717
AvastFileRepMalware [PUP]
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderTrojan.Generic.20976317
RisingMalware.Heuristic!ET#98% (rdm+)
Endgamemalicious (high confidence)
SophosGeneric PUA EB (PUA)
F-SecureTrojan.Generic.20976317
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.PUPXAR.rc
EmsisoftApplication.GameHack (A)
CyrenW32/Trojan.OHBI-7274
JiangminTrojanDropper.Injector.aqkx
WebrootW32.Hacktool.Gen
FortinetW32/Generic.AC.17F472!tr
Antiy-AVLTrojan/Script.AGeneric
ArcabitTrojan.Generic.D14012BD
ZoneAlarmUDS:DangerousObject.Multi.Generic
ALYacTrojan.Generic.20976317
MAXmalware (ai score=89)
Ad-AwareTrojan.Generic.20976317
MalwarebytesCheatTool.CETTrainer
WhiteArmorMalware.HighConfidence
PandaTrj/CI.A
AVwareTrojan.Win32.Generic!BT
ESET-NOD32a variant of Win32/HackTool.CheatEngine.AF potentially unsafe
YandexHackTool.CheatEngine!h2lP7QG9eRI
SentinelOnestatic engine – malicious
GDataWin32.Riskware.Hacktool.D
AVGFileRepMalware [PUP]
Paloaltogeneric.ml
CrowdStrikemalicious_confidence_100% (D)

How to remove Trojan.Generic.20976317?

Trojan.Generic.20976317 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment