Trojan

Trojan.Generic.30004998 (file analysis)

Malware Removal

The Trojan.Generic.30004998 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.30004998 virus can do?

  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Authenticode signature is invalid

How to determine Trojan.Generic.30004998?


File Info:

name: 85B997AA2E8006B73D9B.mlw
path: /opt/CAPEv2/storage/binaries/bece649abae53778460a979075b91b96aa4e733b82f0c043092e534a373e0dea
crc32: 32D0C707
md5: 85b997aa2e8006b73d9b4be7461b31ff
sha1: 8478a1ca2e82858a0a9fbaf3bc6b56dcc75a3938
sha256: bece649abae53778460a979075b91b96aa4e733b82f0c043092e534a373e0dea
sha512: 60a6647f2cc0993fd90d5f702b22853cd04d4493012cf5c3c24855dc330cdfb18ee9dd37d312fa28a035d16f2b75de6290d0fb7f7f2672c48e697d9cc708f851
ssdeep: 768:2HJd0TpH2+bQ2dUWVX9Hfv1JMWmtLEJOyuBxG0D3mjfS3XJe3MsNDngLhsVoGTl2:2pgpHzb9dZVX9fHMvG0D3XJe3MsNDnaF
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T13323C01FB6C19DB7E59203701A77B77AF7BBC3C901650A074BA42F7F2D611838A162A1
sha3_384: 20ccd731b493782fb0cbd957e835c6a3564083b995416466cd54fa162774064aecf881efe673f78774568104d0e7d5d5
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-12-05 22:50:52

Version Info:

OriginalFilename: shubert.exe
ProductName: shubert
Translation: 0x0000 0x04e4

Trojan.Generic.30004998 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader32.58646
MicroWorld-eScanTrojan.Generic.30004998
FireEyeTrojan.Generic.30004998
ALYacTrojan.Generic.30004998
CylanceUnsafe
SangforTrojan.Win32.Gen.MBT
K7AntiVirusTrojan-Downloader ( 005535b51 )
AlibabaTrojanDownloader:Win32/Generic.c711bc5d
K7GWTrojan-Downloader ( 005535b51 )
CrowdStrikewin/malicious_confidence_60% (W)
CyrenW32/Agent.CJH.gen!Eldorado
ESET-NOD32NSIS/TrojanDownloader.Agent.NXY
TrendMicro-HouseCallTROJ_GEN.R002C0DGT21
Paloaltogeneric.ml
KasperskyHEUR:Trojan-Downloader.Win32.Agent.gen
BitDefenderTrojan.Generic.30004998
NANO-AntivirusTrojan.Nsis.Agent.fnwqvt
AvastNSIS:DropperX-gen [Drp]
RisingDownloader.Agent/NSIS!1.BBD4 (CLASSIC)
Ad-AwareTrojan.Generic.30004998
EmsisoftTrojan.Generic.30004998 (B)
TrendMicroTROJ_GEN.R002C0DGT21
McAfee-GW-EditionBehavesLike.Win32.AdwareTskLnk.ph
SentinelOneStatic AI – Malicious PE
Trapminemalicious.high.ml.score
SophosMal/Generic-S
AviraHEUR/AGEN.1224942
MicrosoftTrojan:Win32/Skeeyah.A!rfn
GDataTrojan.Generic.30004998
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Malware-gen.R372760
Acronissuspicious
McAfeeArtemis!85B997AA2E80
VBA32TrojanDownloader.Agent
MalwarebytesTrojan.AdLoad
APEXMalicious
MAXmalware (ai score=89)
MaxSecureTrojan.Malware.300983.susgen
FortinetNSIS/Agent.NXY!tr.dldr
AVGNSIS:DropperX-gen [Drp]
Cybereasonmalicious.a2e828
PandaTrj/CI.A

How to remove Trojan.Generic.30004998?

Trojan.Generic.30004998 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment