Trojan

Trojan.Generic.21949046 removal instruction

Malware Removal

The Trojan.Generic.21949046 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.21949046 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • A process created a hidden window
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • A scripting utility was executed
  • A cryptomining command was executed

How to determine Trojan.Generic.21949046?


File Info:

name: A11B77C7D6C2F5355482.mlw
path: /opt/CAPEv2/storage/binaries/a199102a4aa6e57d8760f63bb977b5179d7fdcbb746f4192f225767fc08c3f6b
crc32: 5ACE4A0B
md5: a11b77c7d6c2f5355482050821b744f8
sha1: 19da1dbfeb1a1c30102ef2cef07ab045b9c55352
sha256: a199102a4aa6e57d8760f63bb977b5179d7fdcbb746f4192f225767fc08c3f6b
sha512: 38f40c52841d54ac8db2ba71678931a2f9971250e8ad92db4267a10ba26defebdb0d9ef247f22a2c2bd7a76ce9f57e911e2cd9be3d915437c2ea72bb52a8aa53
ssdeep: 3072:YDokQsriguRNGpAoSXYYBSInXQ3r6ew3PR+1A8+F9B3:dCCNGpA/XlnXBqAtFj3
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BFF38C2271C0C073C94344358A9ACBA1EA78B8396B75698FFFD5076E7E34691C726B43
sha3_384: f164b38527767ddc88e154acf3af07cc47ce8fad79b40992a4b2c480c336ec320a84da0382a504023ece4a15e3074339
ep_bytes: e82e640000e978feffff558bec83ec04
timestamp: 2015-11-18 09:15:25

Version Info:

0: [No Data]

Trojan.Generic.21949046 also known as:

LionicTrojan.Win32.Cryptodef.toam
MicroWorld-eScanTrojan.Generic.21949046
FireEyeTrojan.Generic.21949046
ALYacTrojan.Generic.21949046
MalwarebytesGeneric.Malware/Suspicious
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Generic.8
AlibabaTrojan:BAT/Miner.9bcded2e
Cybereasonmalicious.7d6c2f
SymantecTrojan Horse
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Downloader.VBS-148
KasperskyHEUR:Trojan.Script.Generic
BitDefenderTrojan.Generic.21949046
Ad-AwareTrojan.Generic.21949046
EmsisoftTrojan.Generic.21949046 (B)
ComodoTrojWare.VBS.CoinMiner.NI@7vfiko
McAfee-GW-EditionBehavesLike.Win32.Dropper.ch
SophosMal/Generic-S
GDataTrojan.Generic.21949046
ArcabitTrojan.Generic.D14EEA76
ZoneAlarmHEUR:Trojan.Script.Generic
MicrosoftTrojan:Win32/Occamy.CA1
McAfeeArtemis!A11B77C7D6C2
MAXmalware (ai score=98)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Script.GENERIC!tr
PandaTrj/CI.A

How to remove Trojan.Generic.21949046?

Trojan.Generic.21949046 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment