Trojan

How to remove “Trojan.Generic.21830142”?

Malware Removal

The Trojan.Generic.21830142 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.21830142 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Generic.21830142?


File Info:

crc32: B0113486
md5: 593629cdeb1a1a4a5e6a22d36de0c8ff
name: qru.exe
sha1: 48069c11319dd961763f27a4d3865ef7bbc61087
sha256: 16937e68d4a48302c4d7af97125a52ac6bcabc6929051be32b694548b1463060
sha512: 0e724b98d0171a08b83f3870435d43c4bb3493974041cf5d7e946e2204f718060ffe3caf279ad909fc6895b40effebfbde84bea8ae025070aceeee68cc8a5514
ssdeep: 6144:qB/zmWY7sbJAwoyzK7TDY28ap9yR5oOqGqdrorL:tDgbjoyzeZ8a/yB49Q
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright Webroot Inc. xa9 2017
Assembly Version: 1.0.0.0
InternalName: QakbotRemovalUtility.exe
FileVersion: 1.0.0.0
CompanyName: Webroot Inc.
LegalTrademarks:
Comments: Removes W32/Qakbot
ProductName: Qakbot Removal Utility
ProductVersion: 1.0.0.0
FileDescription: Qakbot Removal Utility
OriginalFilename: QakbotRemovalUtility.exe

Trojan.Generic.21830142 also known as:

MicroWorld-eScanTrojan.Generic.21830142
FireEyeTrojan.Generic.21830142
Qihoo-360HEUR/QVM03.0.B4B9.Malware.Gen
ALYacTrojan.Generic.21830142
VIPRETrojan.Win32.Generic!BT
BitDefenderTrojan.Generic.21830142
Cybereasonmalicious.deb1a1
BitDefenderThetaGen:NN.ZemsilCO.34104.rm0@a0A5JAo
GDataTrojan.Generic.21830142
AegisLabTrojan.Win32.Generic.4!c
APEXMalicious
Ad-AwareTrojan.Generic.21830142
DrWebTrojan.KillProc.52852
Invinceaheuristic
EmsisoftTrojan.Generic.21830142 (B)
SentinelOneDFI – Malicious PE
MAXmalware (ai score=87)
ArcabitTrojan.Generic.D14D19FE
Acronissuspicious
VBA32Trojan.KillProc
eGambitUnsafe.AI_Score_100%
AVGFileRepMalware
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_60% (W)
MaxSecureTrojan.Malware.12053186.susgen

How to remove Trojan.Generic.21830142?

Trojan.Generic.21830142 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment