Trojan

Should I remove “Trojan.Generic.31301410”?

Malware Removal

The Trojan.Generic.31301410 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.31301410 virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Trojan.Generic.31301410?


File Info:

name: 3BFA8290FD1069093786.mlw
path: /opt/CAPEv2/storage/binaries/0353b8a8775e41079be87ad790c63ea1706741baacf4f0c33a28aa589dfe4129
crc32: 6BEE3ADD
md5: 3bfa8290fd1069093786410f7cebef88
sha1: 18af653c87069fdca7eaf3f83808ed27aa626503
sha256: 0353b8a8775e41079be87ad790c63ea1706741baacf4f0c33a28aa589dfe4129
sha512: e5ad74114297aa729485899eb2575227e12b481f6cc9851ddb542e9c0e2188922d9d2e4abf473933de592e69aa07de5668f6dad7998a096c1fcdf3fb2ec78e57
ssdeep: 196608:AWurrZSgVSd6qJgZT1njgRgjFP6icnG4fZqjNzElT:j4zVSIqCTxfBP6pnGKyNgx
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BE763347FECE97C4D88B99B4627B24AA06572C31CDBC5411B6F7367CAE63283607406B
sha3_384: 3d1b4d2137a41b9518bdeb7f36a8a485d198b9879eedcee4ce072f4c0d5d2d0187902f8c0149918733f05fc344674576
ep_bytes: 60be15c044008dbeeb4ffbff5783cdff
timestamp: 2009-02-24 21:58:23

Version Info:

FileDescription: WiseCare365 6.1.4绿色破解版
FileVersion: 6.1.4.601
LegalCopyright: 懒得勤快
Translation: 0x0804 0x04b0

Trojan.Generic.31301410 also known as:

LionicTrojan.Win32.Agent.4!c
MicroWorld-eScanTrojan.Generic.31301410
FireEyeGeneric.mg.3bfa8290fd106909
McAfeeArtemis!3BFA8290FD10
CylanceUnsafe
AlibabaTrojan:Win32/Generic.c4299ad3
VirITTrojan.Win32.Cryptic.CID
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
KasperskyTrojan.Win32.Agent.xalhuz
BitDefenderTrojan.Generic.31301410
TencentWin32.Trojan.Agent.Losg
Ad-AwareTrojan.Generic.31301410
SophosGeneric ML PUA (PUA)
TrendMicroTROJ_GEN.R067C0WLR21
McAfee-GW-EditionBehavesLike.Win32.BadFile.wc
EmsisoftTrojan.Generic.31301410 (B)
Paloaltogeneric.ml
GDataTrojan.Generic.31301410
AviraTR/Agent.xagrv
Antiy-AVLTrojan/Generic.ASMalwS.34BF5B3
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 99)
ALYacTrojan.Generic.31301410
MAXmalware (ai score=85)
TrendMicro-HouseCallTROJ_GEN.R067C0WLR21
FortinetMalicious_Behavior.SB
AVGWin32:TrojanX-gen [Trj]

How to remove Trojan.Generic.31301410?

Trojan.Generic.31301410 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment