Trojan

About “Trojan.Generic.30157854” infection

Malware Removal

The Trojan.Generic.30157854 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.30157854 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Unconventionial language used in binary resources: Saami
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
telete.in
a.tomx.xyz

How to determine Trojan.Generic.30157854?


File Info:

crc32: C6DBAD26
md5: 57f80cb19b366ffdf0237b048dc135e5
name: 57F80CB19B366FFDF0237B048DC135E5.mlw
sha1: 5a35c6c0f20a50749ea94c5804de18edc66ee02a
sha256: 98a54cc3a7d2ddefda1c1d7a95f68a5bc65294f5665bcd2510b29b133105f885
sha512: 10ade4726a3a5ae2228d74fee1bad628359c61757e716ecd0b7621d240ef20dc2764def8dd9106b5d3bef9838954e248bf6104a0740f23097f3286f55f4677bc
ssdeep: 12288:1m/YAHgmrtPC9PX/S1lVFE6UxyIeYfYGJPWN8o4MJDl7:15ATrU9f61lViQYf/JPWN8WD
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x1209 0x052d

Trojan.Generic.30157854 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00582a0b1 )
DrWebTrojan.DownLoader43.22959
CynetMalicious (score: 100)
CAT-QuickHealRansom.Stop.Z5
ALYacTrojan.Generic.30157854
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.3487005
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/StopCrypt.47b02e23
K7GWTrojan ( 00582a0b1 )
Cybereasonmalicious.0f20a5
CyrenW32/Kryptik.EYC.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HMNW
APEXMalicious
AvastWin32:DropperX-gen [Drp]
ClamAVWin.Malware.Generic-9895402-0
KasperskyHEUR:Trojan-Ransom.Win32.Stop.gen
BitDefenderTrojan.Generic.30157854
NANO-AntivirusTrojan.Win32.Stop.jcgwns
ViRobotTrojan.Win32.Z.Shellcode.537600
MicroWorld-eScanTrojan.Generic.30157854
TencentWin32.Trojan.Stop.Szca
Ad-AwareTrojan.Generic.30157854
SophosML/PE-A
BitDefenderThetaGen:NN.ZexaF.34170.Gu0@aCYkptkO
FireEyeGeneric.mg.57f80cb19b366ffd
EmsisoftTrojan.Crypt (A)
JiangminTrojan.Stop.bhp
AviraTR/AD.StellarStealer.gpbdo
eGambitUnsafe.AI_Score_93%
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftRansom:Win32/StopCrypt.MGK!MTB
GDataTrojan.Generic.30157854
AhnLab-V3Trojan/Win.Racealer.R442237
Acronissuspicious
McAfeeRDN/Generic.grp
MAXmalware (ai score=89)
VBA32Malware-Cryptor.Azorult.gen
MalwarebytesTrojan.MalPack.GS
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom_StopCrypt.R049C0DIO21
RisingTrojan.Kryptik!1.D975 (CLASSIC)
YandexTrojan.Kryptik!ek2tBNGX4lE
SentinelOneStatic AI – Malicious PE
FortinetW32/Kryptik.HMNW!tr
AVGWin32:DropperX-gen [Drp]
Paloaltogeneric.ml

How to remove Trojan.Generic.30157854?

Trojan.Generic.30157854 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment