Trojan

Trojan.Generic.33058329 removal guide

Malware Removal

The Trojan.Generic.33058329 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.33058329 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.Generic.33058329?


File Info:

name: 8184A113B001FA65779C.mlw
path: /opt/CAPEv2/storage/binaries/760c5f0ff920b4c3bf769e2db7f552a97e8badc2aafa4f8b0570231ff13567e8
crc32: 24567B41
md5: 8184a113b001fa65779c68fbc2d12f70
sha1: f8e7271698ca66016181d1961354e92350a05885
sha256: 760c5f0ff920b4c3bf769e2db7f552a97e8badc2aafa4f8b0570231ff13567e8
sha512: 3bf0f477b08f929bc316f1497d843f91bf5c6e2e8a9e609f5ca6e4fdacb37deac3546fcfe301b0a7e975b6f238dac0702d32e0da88c05f009e6237387fef2007
ssdeep: 24576:Utg+CD0fg9quhpxpy4NZryW+7skiMWG2nMUDZ3z:U+VDQAquxg4HryWD1MinMUZz
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16535CEE946238949D9CCDA3E02C5E33C76F5029E69C979A1D0B5B56CA0FCCC4E93867C
sha3_384: eaf48193ecf66499f472fce5920156f51b7d5d762f4bade14b91dffeb8f4c1a4cb76c2606f4ebe5bfc08cdbb10140290
ep_bytes: 60be00706a008dbe00a0d5ff5789e58d
timestamp: 2019-03-28 02:20:10

Version Info:

FileVersion: 1.0.0.0
FileDescription: 机器人主程序
ProductName: 返利机器人
ProductVersion: 1.0.0.0
CompanyName: 工作室开发
LegalCopyright: 工作室开发
Comments: 软件核心程序
Translation: 0x0804 0x04b0

Trojan.Generic.33058329 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.Generic.33058329
FireEyeGeneric.mg.8184a113b001fa65
McAfeeArtemis!8184A113B001
MalwarebytesGeneric.Malware.AI.DDS
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005246d51 )
K7GWTrojan ( 005246d51 )
Cybereasonmalicious.698ca6
BitDefenderThetaGen:NN.ZexaF.36662.enKfa4sdDrmb
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
CynetMalicious (score: 100)
BitDefenderTrojan.Generic.33058329
NANO-AntivirusTrojan.Win32.Fakealert.juotvw
AvastWin32:Malware-gen
TencentMalware.Win32.Gencirc.10b3efdf
EmsisoftTrojan.Generic.33058329 (B)
DrWebTrojan.Fakealert.60324
VIPRETrojan.Generic.33058329
McAfee-GW-EditionBehavesLike.Win32.Backdoor.tc
SophosGeneric Reputation PUA (PUA)
IkarusPUA.BlackMoon
GDataWin32.Trojan.PSE.1KQMTX4
Antiy-AVLTrojan[Dropper]/Win32.Woozlist
XcitiumPacked.Win32.MUPX.Gen@24tbus
ArcabitTrojan.Generic.D1F86E19
MicrosoftTrojan:Win32/Wacatac.A!ml
GoogleDetected
AhnLab-V3Malware/Win.Malware-gen.C5368597
VBA32BScope.Trojan.Tiggre
ALYacTrojan.Generic.33058329
MAXmalware (ai score=82)
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002H0CH623
RisingHackTool.Agent!1.B2A6 (CLOUD)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/CoinMiner.PHP!tr
AVGWin32:Malware-gen
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_60% (D)

How to remove Trojan.Generic.33058329?

Trojan.Generic.33058329 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment