Trojan

How to remove “Trojan.Generic.30045107”?

Malware Removal

The Trojan.Generic.30045107 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.30045107 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process created a hidden window
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Looks up the external IP address
  • Uses Windows utilities for basic functionality
  • Sniffs keystrokes
  • Steals private information from local Internet browsers
  • Attempts to identify installed AV products by installation directory
  • Harvests credentials from local FTP client softwares
  • Harvests information related to installed instant messenger clients
  • Harvests information related to installed mail clients
  • Attempts to create or modify system certificates
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
checkip.dyndns.org
freegeoip.app

How to determine Trojan.Generic.30045107?


File Info:

crc32: ADE4FFFE
md5: 6a1281b5e15b897bd20681340cfe3793
name: 6A1281B5E15B897BD20681340CFE3793.mlw
sha1: a243e634b14c5a3f9815f14a65bd22eb47f9325c
sha256: d0fef103952fc6153a48b9d529d96d2f76cf989855877a16cc5aae393e1e3e0d
sha512: 73ce6d71853a326fc2cabff31af3d3e0c5b92ca8c7cb41f94bf4782212496f5fb959c3b28362f4684a016a5d5f9d320e884258117621cbbe620e5865891755ff
ssdeep: 12288:5Gam+ehJE5SxwQjyEkWvBIETXH7aJMODeOLv5MpE:FmJE51QjVpiIXHKe0E
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Generic.30045107 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
DrWebTrojan.Packed2.43330
ALYacGen:Variant.Zusy.400947
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (W)
Cybereasonmalicious.5e15b8
CyrenW32/Kryptik.FGQ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HMMJ
APEXMalicious
AvastWin32:PWSX-gen [Trj]
KasperskyHEUR:Trojan.Win32.Zenpak.gen
BitDefenderTrojan.Generic.30045107
MicroWorld-eScanTrojan.Generic.30045107
Ad-AwareTrojan.Generic.30045107
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34142.IuW@aSeyMyii
VIPRELooksLike.Win32.Crowti.b (v)
TrendMicroMal_HPGen-37b
McAfee-GW-EditionBehavesLike.Win32.BadFile.hc
FireEyeGeneric.mg.6a1281b5e15b897b
EmsisoftTrojan.Generic.30045107 (B)
SentinelOneStatic AI – Malicious PE
MicrosoftTrojan:Win32/Lokibot.DECC!MTB
GDataTrojan.Generic.30045107
AhnLab-V3Trojan/Win.Hpgen.C4633029
McAfeeGenericRXQA-IL!6A1281B5E15B
MAXmalware (ai score=87)
VBA32BScope.Trojan-Dropper.Injector
MalwarebytesTrojan.MalPack
TrendMicro-HouseCallMal_HPGen-37b
RisingTrojan.Kryptik!1.D978 (CLASSIC)
FortinetW32/GenKryptik.FIBB!tr
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml

How to remove Trojan.Generic.30045107?

Trojan.Generic.30045107 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment