Trojan

What is “Trojan.Generic.2928047”?

Malware Removal

The Trojan.Generic.2928047 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.2928047 virus can do?

  • Sample contains Overlay data
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan.Generic.2928047?


File Info:

name: 2D1F50A73703F27CA2D1.mlw
path: /opt/CAPEv2/storage/binaries/1b98bb4cd949c487553703e036e12954f15304f1183b4bd23dddea526ef456ce
crc32: 9B5B6986
md5: 2d1f50a73703f27ca2d106b7e3a4d17a
sha1: 0bd89cc5909a1e83b9af61ef36ce7f42ab169940
sha256: 1b98bb4cd949c487553703e036e12954f15304f1183b4bd23dddea526ef456ce
sha512: dfe23a8416391b234921289f18eecad0a292ee7ae2eeb462240c717359c3d7d984f4caacf28de65d3a95c54bc22017ec0f85f872115869e9b0983bd691d36b91
ssdeep: 3072:odjhdrZfaG+Mv9jx6osttHmVOvD1IT2Yfve+iIc9h3IeLa9U9d4K8bGL4S:odLL2zEMD1x+iblI62U
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12214EA9D63409B46EA191DFA50715B93AF81BD1437BF8F2230B71B2B3913EE0E616427
sha3_384: e9b927743a57935ff2dad2ba492154d1fd5502cc724e31790bacab6e876c565e8624cad01f0f2ce4ea0d2822b68021bc
ep_bytes: 6894114000e8f0ffffff000000000000
timestamp: 2009-12-30 22:42:06

Version Info:

Translation: 0x0409 0x04b0
CompanyName: UxKYYRFrfyCP1ejJ
ProductName: GoCcca
FileVersion: 7.03.0005
ProductVersion: 7.03.0005
InternalName: QHW4hTvAXUV0If
OriginalFilename: QHW4hTvAXUV0If.exe

Trojan.Generic.2928047 also known as:

BkavW32.CNCalgeri.Heur
LionicTrojan.Win32.Generic.l4p9
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Multi.36
MicroWorld-eScanTrojan.Generic.2928047
FireEyeGeneric.mg.2d1f50a73703f27c
ALYacTrojan.Generic.2928047
ZillyaTrojan.Agent.Win32.69196
SangforSuspicious.Win32.Save.vb
K7AntiVirusEmailWorm ( 003c363a1 )
K7GWEmailWorm ( 003c363a1 )
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/Trojan.DOOY-5277
SymantecPacked.Generic.307
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Injector.AJZ
ClamAVWin.Dropper.DarkKomet-9395758-0
KasperskyTrojan-PSW.Win32.Agent.ovq
BitDefenderTrojan.Generic.2928047
Ad-AwareTrojan.Generic.2928047
EmsisoftTrojan.Generic.2928047 (B)
ComodoTrojWare.Win32.Kreeper.~VKA@1r0eqd
VIPRETrojan.Generic.2928047
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.cc
SentinelOneStatic AI – Malicious PE
Trapminemalicious.high.ml.score
SophosML/PE-A + Mal/VBCheMan-C
IkarusVirus.Win32.VBInject
GoogleDetected
Antiy-AVLTrojan/Generic.ASMalwS.4B
MicrosoftVirTool:Win32/VBInject.DD
ArcabitTrojan.Generic.D2CADAF
ViRobotTrojan.Win32.A.PSW-Agent.196292
ZoneAlarmTrojan-PSW.Win32.Agent.ovq
GDataTrojan.Generic.2928047
CynetMalicious (score: 100)
McAfeeW32/Rimecud.gen.aw
VBA32Trojan.VB.FlyCryptor
APEXMalicious
RisingMalware.Undefined!8.C (TFE:3:yP6sUTJdOfK)
YandexTrojan.GenAsa!3fBPkJ4CT2Q
MAXmalware (ai score=85)
FortinetW32/Refroso.BLC!tr
Cybereasonmalicious.73703f
PandaTrj/Genetic.gen

How to remove Trojan.Generic.2928047?

Trojan.Generic.2928047 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment