Trojan

Trojan.Generic.3090234 removal guide

Malware Removal

The Trojan.Generic.3090234 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.3090234 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Trojan.Generic.3090234?


File Info:

name: C151C178968AB5832C09.mlw
path: /opt/CAPEv2/storage/binaries/f5303df4f9643cb4d92f40d46cc240da0e512c392493e56f8778941bc08aa440
crc32: C3F4368C
md5: c151c178968ab5832c0930e892accd83
sha1: f25ad448fc7f98213e354969cd11a25066fc2123
sha256: f5303df4f9643cb4d92f40d46cc240da0e512c392493e56f8778941bc08aa440
sha512: 24d9492ed018f0404c090d5e6f453277652c3ef0e89867fbe31007335c8f92899e3f62ad99b55bab49fbe040496291acf1c67540a2a5fb3fe092d3c9b3e5190b
ssdeep: 1536:nZMZVGHtpgRSYePifMkPOFlIAlARYv9M9a:ZhHzXY3kkP3YA6v9M9a
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C933F1C759C72676C201A37153CEBBDA86ABB6F185668B8F0CBD4C653D793F40E00A90
sha3_384: 54270112fa9a1ad8116dc5b0f982c1ef9c44df9e3e444a8d08f6b2ba5bed5f84323d81622465f4b430fb798a9d066794
ep_bytes: 60be00b041008dbe0060feff5783cdff
timestamp: 2009-07-13 01:08:13

Version Info:

Translation: 0x0804 0x04b0
CompanyName: MICROSOFT
ProductName: MICROSOFT SYSTEM
FileVersion: 3.01.0034
ProductVersion: 3.01.0034
InternalName: 6
OriginalFilename: 6.exe

Trojan.Generic.3090234 also known as:

Elasticmalicious (moderate confidence)
DrWebBackDoor.Generic.1928
MicroWorld-eScanTrojan.Generic.3090234
CAT-QuickHealTrojan.VB
McAfeeArtemis!C151C178968A
CylanceUnsafe
ZillyaTrojan.QQFish.Win32.7
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 004bcce71 )
K7GWSpyware ( 0005fc441 )
Cybereasonmalicious.8968ab
BitDefenderThetaAI:Packer.E83C40051D
VirITTrojan.Win32.QQFish.BD
SymantecTrojan Horse
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/VB.NZV
APEXMalicious
ClamAVWin.Trojan.Agent-442788
KasperskyTrojan-PSW.Win32.QQFish.bd
BitDefenderTrojan.Generic.3090234
NANO-AntivirusTrojan.Win32.QQFish.fplwwf
AvastFileRepMalware [Trj]
TencentMalware.Win32.Gencirc.114cc6ed
Ad-AwareTrojan.Generic.3090234
EmsisoftTrojan.Generic.3090234 (B)
ComodoTrojWare.Win32.PSW.QQFish.~FAT@20cjgg
F-SecureTrojan.TR/Dropper.Gen
BaiduWin32.Trojan.VB.jc
VIPRETrojan.Generic.3090234
TrendMicroTSPY_QQFISH.G
McAfee-GW-EditionBehavesLike.Win32.Fake.qc
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.c151c178968ab583
SophosML/PE-A + Mal/Behav-160
SentinelOneStatic AI – Malicious PE
GDataTrojan.Generic.3090234
JiangminTrojan.PSW.QQFish.z
WebrootTrojan:Win32/VB.OJ
GoogleDetected
AviraTR/Dropper.Gen
MAXmalware (ai score=88)
Antiy-AVLTrojan[PSW]/Win32.QQFish
KingsoftWin32.Troj.AgentVB.k.(kcloud)
ArcabitTrojan.Generic.D2F273A
ViRobotTrojan.Win32.PSWQQFish.53801
ZoneAlarmTrojan-PSW.Win32.QQFish.bd
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.QQFish.R2028
VBA32Trojan.VB.0879
ALYacTrojan.Generic.3090234
MalwarebytesMalware.Heuristic.1003
TrendMicro-HouseCallTSPY_QQFISH.G
RisingTrojan.PSW.Win32.QQPass.emk (CLOUD)
YandexTrojan.GenAsa!vD9OPo1xH/E
IkarusTrojan-PWS.Win32.QQFish
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.CBWO!tr
AVGFileRepMalware [Trj]
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Generic.3090234?

Trojan.Generic.3090234 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment