Trojan

How to remove “Trojan.Generic.33390100”?

Malware Removal

The Trojan.Generic.33390100 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.33390100 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality
  • Behavioural detection: Injection (inter-process)
  • Behavioural detection: Injection with CreateRemoteThread in a remote process
  • Harvests cookies for information gathering
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.Generic.33390100?


File Info:

name: 43F53E41608F89347DFC.mlw
path: /opt/CAPEv2/storage/binaries/b73805fb247fbca3ed5594002d57253b3a6b8bb3b4211282163c7bc02f506e2c
crc32: 477DAC6A
md5: 43f53e41608f89347dfc2e301d816d61
sha1: 43d4ce67b7b326e4b16e8b45ccb620b90a3a803e
sha256: b73805fb247fbca3ed5594002d57253b3a6b8bb3b4211282163c7bc02f506e2c
sha512: 69af3fc438f61f8bb65f08c7a8f0b088e3e3d4c8cbdf4ecbfcc83bdd5cf8ec3d84b796e566625c1d16e731713c9be1159d3fd4d45cc451002178251602d8bd67
ssdeep: 49152:0IB8atHz8Tfpnr6me54CMqiI5Cd9ofOp761PVbKCTol8AUNY7qHgzS:0IB8cQpa4CMqi/HofOZiEgK7qHgzS
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FD164B313E51AA2AD46109307E6EE65F031F5EB05B6C80EB727D3EE91B704E22731B95
sha3_384: 56e6121ccf7e6d0108fd676913abcf6c86f9868a5f2c9b943a906c58255a5645f73a2fd7d40b7924ed458a087e1da451
ep_bytes: e8c0070000e925feffffc3558bec8b45
timestamp: 2021-05-24 11:02:22

Version Info:

FileDescription: 壁纸
FileVersion: 10.1121.1330.514
InternalName: 360wpsrv.exe
OriginalFilename: 360wpsrv.exe
ProductName: 壁纸
ProductVersion: 10.1121.1330.514
Translation: 0x0804 0x04b0

Trojan.Generic.33390100 also known as:

LionicAdware.Win32.Burden.2!c
AVGWin32:Sality [Inf]
MicroWorld-eScanTrojan.Generic.33390100
FireEyeGeneric.mg.43f53e41608f8934
ALYacTrojan.Generic.33390100
MalwarebytesMalware.Heuristic.1001
ZillyaAdware.Burden.Win32.16014
SangforVirus_Suspicious.Win32.Sality.bh
AlibabaAdWare:Win32/Burden.e42c0180
CrowdStrikewin/malicious_confidence_60% (W)
VirITWin32.Sality.BH
CyrenW32/Sality.E.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
Kasperskynot-a-virus:HEUR:AdWare.Win32.Burden.gen
BitDefenderTrojan.Generic.33390100
NANO-AntivirusVirus.Win32.Virut-Gen.bwpxnc
AvastWin32:Sality [Inf]
SophosGeneric Reputation PUA (PUA)
VIPRETrojan.Generic.33390100
TrendMicroPE_SALITY.RL
McAfee-GW-EditionBehavesLike.Win32.Sality.rh
EmsisoftTrojan.Generic.33390100 (B)
GDataTrojan.Generic.33390100
ArcabitTrojan.Generic.D1FD7E14
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.Burden.gen
MicrosoftProgram:Win32/Wacapew.C!ml
GoogleDetected
MAXmalware (ai score=85)
Cylanceunsafe
TrendMicro-HouseCallPE_SALITY.RL
RisingVirus.Sality/Debris!1.A12C (CLASSIC)
SentinelOneStatic AI – Suspicious PE
MaxSecureAdware.W32.Burden.gen_246386
FortinetPossibleThreat.ZDS
BitDefenderThetaGen:NN.ZexaF.36132.@t2@aqAGD1gj
DeepInstinctMALICIOUS

How to remove Trojan.Generic.33390100?

Trojan.Generic.33390100 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment