Trojan

How to remove “Trojan.Generic.31275254”?

Malware Removal

The Trojan.Generic.31275254 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.31275254 virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • Dynamic (imported) function loading detected
  • Performs HTTP requests potentially not found in PCAP.
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Created a process from a suspicious location
  • Attempts to modify proxy settings

How to determine Trojan.Generic.31275254?


File Info:

name: 62155FED3EC51022A657.mlw
path: /opt/CAPEv2/storage/binaries/1d913e0a43e594c2f8fda7b620939728b7a7ca5ee6bd53273b035e80547c5eed
crc32: 337B33AD
md5: 62155fed3ec51022a657fa65b5ee6fed
sha1: c9f7370ab9cb096c1c86baf64d13c0543c443f6e
sha256: 1d913e0a43e594c2f8fda7b620939728b7a7ca5ee6bd53273b035e80547c5eed
sha512: 225f0af13449b2317532d1c1eb626f62316fadd2da5a53a0fcbeea6056234b2d595fff6c9170d7b8900eb7415338bcd3f53a35475e9e427903f7d567c26875c3
ssdeep: 192:sHO6OI9TZJ+PrnEEXJzaMtkpicnEBYC0mH1cAF:vI9TZJghXJ+lMBTx1c2
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T120A2DE342FEB1EB5E377CAF246F6D3C25979F532A903D60C80CE4B440523A55D9A0E2A
sha3_384: 68e74cfaf9943ca2df80cf42bafa1a9ccf02fb3f3196c673e7eaf4d95eefa839f94d91dbf1e26a4ce2658c4c33d8d63b
ep_bytes: 558becb83c200000e893030000535657
timestamp: 2013-09-11 14:39:41

Version Info:

0: [No Data]

Trojan.Generic.31275254 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader26.64201
MicroWorld-eScanTrojan.Generic.31275254
FireEyeGeneric.mg.62155fed3ec51022
CAT-QuickHealTrojan.Mauvaise.SL1
McAfeeDownloader-FBWV!62155FED3EC5
CylanceUnsafe
ZillyaDownloader.Small.Win32.71821
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan-Downloader ( 0050fef41 )
K7GWTrojan-Downloader ( 00456a071 )
Cybereasonmalicious.d3ec51
BitDefenderThetaGen:NN.ZexaE.34114.bmY@aGKDNwf
VirITTrojan.Win32.Generic.BSZC
CyrenW32/Trojan3.AQGI
SymantecDownloader.Upatre!gm
ESET-NOD32a variant of Win32/TrojanDownloader.Small.PRL
TrendMicro-HouseCallTROJ_UPATRE.SM37
ClamAVWin.Trojan.Agent-1279613
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Generic.31275254
NANO-AntivirusTrojan.Win32.DownLoad3.cqsjfu
AvastWin32:Downloader-WID [Trj]
RisingDropper.Generic!8.35E (TFE:dGZlOgUk6EC9drOHzw)
Ad-AwareTrojan.Generic.31275254
EmsisoftTrojan.Generic.31275254 (B)
ComodoTrojWare.Win32.TrojanDownloader.Upatre.ACC@56yhj8
BaiduWin32.Trojan-Downloader.Waski.k
VIPRETrojan-Downloader.Win32.Upatre.a (v)
TrendMicroTROJ_UPATRE.SM37
McAfee-GW-EditionBehavesLike.Win32.Upatre.mz
SophosML/PE-A + Troj/Upatre-XZ
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.1IKFHOS
JiangminTrojanDownloader.Genome.acpr
AviraTR/Dropper.Gen
MAXmalware (ai score=89)
Antiy-AVLTrojan/Generic.ASMalwS.715EEF
MicrosoftTrojanDownloader:Win32/Upatre.A
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Zbot.R83549
Acronissuspicious
ALYacTrojan.Generic.31275254
VBA32BScope.Trojan.Downloader
MalwarebytesMalware.AI.3705760751
APEXMalicious
TencentTrojan.Win32.Downloader.wf
YandexTrojan.GenAsa!LXiB97J6ZtU
IkarusTrojan-Downloader.Win32.Upatre
MaxSecureTrojan.Upatre.Gen
FortinetW32/Tiny.NIV!tr
AVGWin32:Downloader-WID [Trj]
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Trojan.Generic.31275254?

Trojan.Generic.31275254 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment