Trojan

Trojan.Generic.23215982 removal tips

Malware Removal

The Trojan.Generic.23215982 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.23215982 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Guard pages use detected – possible anti-debugging.
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan.Generic.23215982?


File Info:

name: 8250D9781AAAC06A04F2.mlw
path: /opt/CAPEv2/storage/binaries/c205211ce8d161b6f637962489bf6dfd4113b0e404de513b3f1cce6ecb8859e7
crc32: 119E8840
md5: 8250d9781aaac06a04f28eba6fd08df1
sha1: 13a05de95a8c73279d5a75e9751fb9ec8cb20449
sha256: c205211ce8d161b6f637962489bf6dfd4113b0e404de513b3f1cce6ecb8859e7
sha512: c529e87fdefb8b590b0c1cc1cdd264d4416d2e71c5e435b39e733d09253c893ef6c416bcc318b4fbee7cc1f917d57c0407da99722093a990d711d4c4f00c6af8
ssdeep: 6144:5jfgWHpZ2W3vx6AbnEhBg+6xd5MYQih48fAB9KfJdjWClThaaA3hd:pYIplzTxd5tJDfc9ajWb
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19D64E0271FA2C517E9362B3468A3B37496A6AFC0F617DD17AF280AEBBC747503C85150
sha3_384: 9823caca788212483536f376486ccb6f1f45337b5962ea91d765eee7e21e49bbe8d171269a7f8b49264e7f66b05c45b0
ep_bytes: ff250020400000000000000000000000
timestamp: 2016-07-10 18:32:14

Version Info:

Translation: 0x0000 0x04b0
CompanyName: Microsoft
FileDescription: Hackers de Moedas Habbo
FileVersion: 1.0.0.0
InternalName: Hackers de Moedas Habbo.exe
LegalCopyright: Copyright © Microsoft 2016
OriginalFilename: Hackers de Moedas Habbo.exe
ProductName: Hackers de Moedas Habbo
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Trojan.Generic.23215982 also known as:

LionicTrojan.Win32.Generic.4!c
DrWebTrojan.PWS.StealerNET.2
MicroWorld-eScanTrojan.Generic.23215982
FireEyeTrojan.Generic.23215982
ALYacTrojan.Generic.23215982
CylanceUnsafe
K7AntiVirusPassword-Stealer ( 0055e3ee1 )
AlibabaTrojan:MSIL/Generic.c69d4781
K7GWPassword-Stealer ( 0055e3ee1 )
Cybereasonmalicious.81aaac
ArcabitTrojan.Generic.D1623F6E
BitDefenderThetaGen:NN.ZemsilF.34294.uq0@ae9vyUi
CyrenW32/MSIL_Troj.BLQ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/PSW.Agent.ONZ
TrendMicro-HouseCallTROJ_GEN.R002C0PH521
Paloaltogeneric.ml
BitDefenderTrojan.Generic.23215982
NANO-AntivirusTrojan.Win32.Agent.fiaycm
AvastFileRepMalware
Ad-AwareTrojan.Generic.23215982
EmsisoftTrojan.Generic.23215982 (B)
ComodoMalware@#my3oiuaamq73
BaiduMSIL.Trojan.Agent.p
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0PH521
McAfee-GW-EditionRDN/Generic PWS.y
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_100%
AviraTR/Spy.Agent.nzpm
MAXmalware (ai score=87)
Antiy-AVLTrojan/Generic.ASMalwS.29981D2
MicrosoftBackdoor:Win32/Bladabindi!ml
GDataTrojan.Generic.23215982
CynetMalicious (score: 99)
McAfeeRDN/Generic PWS.y
VBA32TScope.Trojan.MSIL
APEXMalicious
IkarusTrojan.Kazy
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.NRZ!tr.pws
AVGFileRepMalware
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Trojan.Generic.23215982?

Trojan.Generic.23215982 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment