Trojan

Trojan.Generic.32003159 removal tips

Malware Removal

The Trojan.Generic.32003159 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.32003159 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Creates a copy of itself
  • Deletes executed files from disk
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.Generic.32003159?


File Info:

name: 9685335B1E9F5E5FFAEB.mlw
path: /opt/CAPEv2/storage/binaries/e0bf4cf5b74d250e4e89e5ef1d5ae65080be3d8059885270f43a494bc5278fa7
crc32: 46BEE7AD
md5: 9685335b1e9f5e5ffaebb365b6cc8f54
sha1: e2f3b5a30d1bfefdda80fba9553ea6cfa011cc27
sha256: e0bf4cf5b74d250e4e89e5ef1d5ae65080be3d8059885270f43a494bc5278fa7
sha512: 1353729d9f118e1fe4fa70124c6a62fddaf51773ceddd0a98c1de549df2e9c907ed4f2f84fcd7f107087d90bf8e78a9264f34a863e4e81add472aca2519f15e1
ssdeep: 3072:QPbS+RrzUs/gFjT46fQ8L/moAWOj4Wd8EEjQTZBBdh:T+R1/gxTRQiikWd5TrD
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T130C30274CFE4066BC9B89A7FE935B382A1321C21A64F12D4A716F30D423F4CE9E15769
sha3_384: 84d601b458b0fc5a927d7d1b5f5c9b5e29b06096455ee57b465698b08078b6e1b7d4fc7a7713d7b96ad3ebc2c77d9ddf
ep_bytes: 60be914b7641f7d221d029c26109c009
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Generic.32003159 also known as:

LionicTrojan.Win32.Agent.Y!c
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.Generic.32003159
FireEyeGeneric.mg.9685335b1e9f5e5f
ALYacTrojan.Generic.32003159
Cylanceunsafe
ZillyaTrojan.Injector.Win32.1588660
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0057fe481 )
AlibabaTrojan:Win32/Injector.b6379e50
K7GWTrojan ( 0057fe481 )
BitDefenderThetaGen:NN.ZexaF.36196.hmW@aeTLZM
CyrenW32/Injector.AGA.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Injector.EBQH
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Agent.gen
BitDefenderTrojan.Generic.32003159
NANO-AntivirusTrojan.Win32.Inject.jtgimt
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.Copak.ka
TACHYONTrojan/W32.Agent.125440.ZW
SophosMal/Generic-S
F-SecureHeuristic.HEUR/AGEN.1333434
VIPRETrojan.Generic.32003159
McAfee-GW-EditionBehavesLike.Win32.Generic.cm
EmsisoftTrojan.Generic.32003159 (B)
SentinelOneStatic AI – Malicious PE
GDataTrojan.Generic.32003159
AviraHEUR/AGEN.1333434
Antiy-AVLGrayWare/Win32.Kryptik.ffp
XcitiumPacked.Win32.MUPX.Gen@24tbus
ArcabitTrojan.Generic.D1E85457
ZoneAlarmHEUR:Trojan.Win32.Agent.gen
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
AhnLab-V3Trojan/Win.Evo-gen.R542946
Acronissuspicious
McAfeeGenericRXAA-FA!9685335B1E9F
MAXmalware (ai score=84)
VBA32Trojan.Copak
MalwarebytesTrojan.Dropper.UPX
PandaTrj/Genetic.gen
RisingTrojan.Injector!1.E280 (CLASSIC)
YandexTrojan.Agent!pax+83TC6BY
IkarusTrojan.Spy.Agent
MaxSecureTrojan.Malware.771626.susgen
FortinetW32/GenKryptik.CRNJ!tr
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Generic.32003159?

Trojan.Generic.32003159 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment