Trojan

About “Trojan.Generic.23200191” infection

Malware Removal

The Trojan.Generic.23200191 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.23200191 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • Installs itself for autorun at Windows startup
  • Attempts to modify browser security settings
  • Attempts to disable Windows Defender
  • Uses suspicious command line tools or Windows utilities

How to determine Trojan.Generic.23200191?


File Info:

crc32: 6DC50BEF
md5: 4a4e6ae16fa17a982bb913ecbfe415cd
name: 4A4E6AE16FA17A982BB913ECBFE415CD.mlw
sha1: a6656088edcc8dbad1968f163b811b39f8179df3
sha256: 5b564df8f493d650b4e458fde0782159e98d52fd082220aae9c78bff2e7f0c7b
sha512: 59b314b3d37b089a9f3d832bd0f957f4086d861204cf3374c9086fc4ce856bdbffb08b4e1eb6d426a9d64e52ab6a7e533b6074337762d994faf79fee8ca5233e
ssdeep: 3072:118c7+0145vWp1icKAArDZz4N9GhbkENEkbtxTbA5ZNnMn:/8c7+Ip0yN90vESxAu
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
InternalName: Wextract
FileVersion: 11.00.17134.1 (WinBuild.160101.0800)
CompanyName: Microsoft Corporation
ProductName: Internet Explorer
ProductVersion: 11.00.17134.1
FileDescription: Win32 Cabinet Self-Extractor
OriginalFilename: WEXTRACT.EXE .MUI
Translation: 0x0409 0x04b0

Trojan.Generic.23200191 also known as:

K7AntiVirusTrojan-Downloader ( 0053cd711 )
LionicTrojan.Win32.Blocker.4!c
Elasticmalicious (high confidence)
ALYacTrojan.Generic.23200191
CylanceUnsafe
ZillyaTrojan.Blocker.Win32.41355
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaRansom:Win32/Blocker.fa8de39b
K7GWTrojan-Downloader ( 0053cd711 )
Cybereasonmalicious.16fa17
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.LYLPJLA
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Blocker.lktn
BitDefenderTrojan.Generic.23200191
NANO-AntivirusTrojan.Win32.Blocker.fkjbei
MicroWorld-eScanTrojan.Generic.23200191
TencentWin32.Trojan.Blocker.Pdcw
Ad-AwareTrojan.Generic.23200191
SophosMal/Generic-S
ComodoMalware@#28izppuzso18w
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.BadFile.ch
FireEyeGeneric.mg.4a4e6ae16fa17a98
EmsisoftTrojan.Generic.23200191 (B)
MicrosoftTrojan:Win32/Occamy.C5B
SUPERAntiSpywareTrojan.Agent/Gen-Downloader
ZoneAlarmHEUR:Trojan.PowerShell.Generic
GDataTrojan.Generic.23200191
AhnLab-V3Malware/Win32.Generic.C2614558
McAfeeArtemis!4A4E6AE16FA1
MAXmalware (ai score=100)
PandaTrj/Genetic.gen
FortinetW32/Blocker.LKTN!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.Generic.23200191?

Trojan.Generic.23200191 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment