Trojan

Should I remove “Trojan.Generic.30145332”?

Malware Removal

The Trojan.Generic.30145332 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.30145332 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Sniffs keystrokes
  • A process was set to shut the system down when terminated
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself

Related domains:

mazag.hopto.org

How to determine Trojan.Generic.30145332?


File Info:

crc32: AE9D921C
md5: c19deb53070413c02b1cd03ae424bb1c
name: C19DEB53070413C02B1CD03AE424BB1C.mlw
sha1: b87d4f4fffb60627ec9c7ced3dbdfc945e7a0089
sha256: 89c72522693c171fc9db2f0ef8412fe6881ec0103ffd8edb0e0427fd68fc7fde
sha512: 28192ecaee6278eb9e2998ab829131b8324c863c576c39876950fb62e631613a55b51a17a5f91f0a4d2af4c3bdbc62a146cfa6d08c61a338ec74714865fa3014
ssdeep: 3072:0Nji1zLkTvFpDpJ/1vtO32GhNvOCmByk4u5v5c1smXzI:0pSzwpl11c2GhNIBykAxX
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2021
Assembly Version: 1.0.0.0
InternalName: Chrome.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: Chrome
ProductVersion: 1.0.0.0
FileDescription: Chrome
OriginalFilename: Chrome.exe

Trojan.Generic.30145332 also known as:

LionicTrojan.MSIL.Bladabindi.m!c
Elasticmalicious (high confidence)
ClamAVWin.Packed.Bladabindi-7432994-0
ALYacTrojan.Generic.30145332
CylanceUnsafe
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaBackdoor:MSIL/Bladabindi.fba0a626
K7GWTrojan ( 004d3cb81 )
K7AntiVirusTrojan ( 004d3cb81 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.BVV
APEXMalicious
AvastMSIL:GenMalicious-T [Trj]
CynetMalicious (score: 99)
KasperskyHEUR:Backdoor.MSIL.Bladabindi.gen
BitDefenderTrojan.Generic.30145332
MicroWorld-eScanTrojan.Generic.30145332
TencentWin32.Trojan.Ursu.Sxej
Ad-AwareTrojan.Generic.30145332
SophosML/PE-A + Mal/MSILInj-AH
ComodoMalware@#1qx55c6eyzxdr
F-SecureHeuristic.HEUR/AGEN.1106945
BitDefenderThetaGen:NN.ZemsilF.34170.im0@auzMICp
McAfee-GW-EditionPWS-FCXS!C19DEB530704
FireEyeGeneric.mg.c19deb53070413c0
EmsisoftTrojan.Generic.30145332 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Malware.Gen
AviraHEUR/AGEN.1106945
KingsoftWin32.Hack.Undef.(kcloud)
MicrosoftBackdoor:MSIL/Bladabindi
ArcabitTrojan.Generic.D1CBFB34
ZoneAlarmHEUR:Backdoor.MSIL.Bladabindi.gen
GDataMSIL.Trojan.PSE.95KHJ9
McAfeePWS-FCXS!C19DEB530704
MAXmalware (ai score=81)
MalwarebytesMalware.AI.2536960427
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R014C0DIG21
RisingBackdoor.Njrat!1.9E49 (CLASSIC)
IkarusBackdoor.MSIL
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/DotNet.BVV!tr
AVGMSIL:GenMalicious-T [Trj]
Paloaltogeneric.ml

How to remove Trojan.Generic.30145332?

Trojan.Generic.30145332 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment