Trojan

Trojan.Generic.30044693 removal tips

Malware Removal

The Trojan.Generic.30044693 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.30044693 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • A process created a hidden window
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Uzbek (Cyrillic)
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
edgedl.me.gvt1.com

How to determine Trojan.Generic.30044693?


File Info:

crc32: 835D92B9
md5: 884d66f9b2674168bdcb7363bb335e8b
name: 884D66F9B2674168BDCB7363BB335E8B.mlw
sha1: f06be6acf264d780d53b4d91fdbf9ec41183b4eb
sha256: 09a0d1d21b35a15cac1bdf2a7a5f1705046f48e0b64b3882b12bea1bf53f2495
sha512: c696bc7b9073dd6ba2472da06656ff345a4ad11dc82c61d6c8f26ee880aca7f920aba6c104b2cdf868a424ad94a99aa10d6b3fee3eb5357b69de2d4a5d953ac6
ssdeep: 3072:L1WLLLZXjrUgNWyN8eqaYjd5nwyOQsWvBdM4K9Kr9ZT3OqOS:QLLlPUuWyjYcM3M4brDO
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: sojbmoemonu.uhe
ProductVersion: 8.19.590.38
Copyright: Copyrighz (C) 2021, fudkagata
Translation: 0x0129 0x0167

Trojan.Generic.30044693 also known as:

K7AntiVirusTrojan ( 005824f01 )
LionicTrojan.Win32.Zenpak.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacTrojan.Generic.30044693
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.3447170
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/StopCrypt.c501b509
K7GWTrojan ( 005824f01 )
Cybereasonmalicious.cf264d
CyrenW32/Kryptik.EWJ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HMLU
APEXMalicious
AvastWin32:CrypterX-gen [Trj]
ClamAVWin.Packed.Generic-9892879-0
KasperskyHEUR:Trojan.Win32.Zenpak.gen
BitDefenderTrojan.Generic.30044693
MicroWorld-eScanTrojan.Generic.30044693
Ad-AwareTrojan.Generic.30044693
SophosMal/Generic-R + Troj/Krypt-BO
BitDefenderThetaGen:NN.ZexaF.34142.mq0@aCzGxhnG
McAfee-GW-EditionBehavesLike.Win32.Trojan.dh
FireEyeGeneric.mg.884d66f9b2674168
EmsisoftTrojan.Generic.30044693 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanSpy.Stealer.fhb
WebrootW32.Trojan.Gen
eGambitUnsafe.AI_Score_87%
MicrosoftRansom:Win32/StopCrypt.MBK!MTB
GDataWin32.Packed.Kryptik.YLNGMP
AhnLab-V3Ransomware/Win.Generic.R441478
Acronissuspicious
McAfeePacked-GDV!884D66F9B267
MAXmalware (ai score=87)
VBA32Trojan.Zenpak
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0WIG21
RisingTrojan.Kryptik!1.D977 (CLASSIC)
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.FKPI!tr
AVGWin32:CrypterX-gen [Trj]
Paloaltogeneric.ml

How to remove Trojan.Generic.30044693?

Trojan.Generic.30044693 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment