Trojan

Should I remove “Trojan.Generic.30199876”?

Malware Removal

The Trojan.Generic.30199876 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.30199876 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • A process created a hidden window
  • Unconventionial language used in binary resources: Polish
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Generic.30199876?


File Info:

crc32: D7A72F6A
md5: d9df9e2f4fea31fe929e63cfef06ab65
name: D9DF9E2F4FEA31FE929E63CFEF06AB65.mlw
sha1: 134acf2ed7400759971926fe045e8993b53095d0
sha256: d71ca00c444024d7ca101471b3ecad154e8d535ad59cb4d70f5df5eb24c46d9d
sha512: 7a58e465605eec77ff183d1deea0bfc75e357704e31b657d85b2ab1f302c061cec30b32f4b4d50ce47a7e3374613e3770189dd89ea2cfbabf5519489b56f7a09
ssdeep: 6144:S9QAQIoQobK3s9Rkqm708KqFayuoUDDv04pc8p24pBuH4KbUZt8r:YQAQIoQob79R8ozqFayCD4ucR4pi4Fr
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x1209 0x04b8

Trojan.Generic.30199876 also known as:

K7AntiVirusTrojan ( 00587f171 )
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Stealer.31028
ClamAVWin.Packed.Generic-9896112-0
ALYacTrojan.Generic.30199876
MalwarebytesTrojan.MalPack.GS
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
BitDefenderTrojan.Generic.30199876
K7GWTrojan ( 00587f171 )
Cybereasonmalicious.ed7400
CyrenW32/Kryptik.FJD.gen!Eldorado
ESET-NOD32a variant of Win32/Kryptik.HMOS
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Injuke.pef
MicroWorld-eScanTrojan.Generic.30199876
TencentWin32.Trojan.Agent.Wurf
Ad-AwareTrojan.Generic.30199876
BitDefenderThetaGen:NN.ZexaF.34170.xy0@a8ItRLbO
FireEyeGeneric.mg.d9df9e2f4fea31fe
SophosML/PE-A
SentinelOneStatic AI – Malicious PE
AviraTR/AD.Chapak.rrfds
eGambitUnsafe.AI_Score_85%
ArcabitTrojan.Generic.D1CCD044
GDataWin32.Trojan.PSE.1HKIOEM
AhnLab-V3Trojan/Win.MalPE.R442437
Acronissuspicious
VBA32Malware-Cryptor.Azorult.gen
MAXmalware (ai score=83)
TrendMicro-HouseCallTROJ_GEN.R02DC0DIP21
RisingTrojan.Kryptik!1.D9C0 (CLASSIC)
IkarusTrojan.Win32.Crypt
FortinetW32/Kryptik.HMOO!tr
PandaTrj/GdSda.A

How to remove Trojan.Generic.30199876?

Trojan.Generic.30199876 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment