Trojan

Trojan.Generic.33425682 removal instruction

Malware Removal

The Trojan.Generic.33425682 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.33425682 virus can do?

  • Performs HTTP requests potentially not found in PCAP.
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality
  • Attempts to modify proxy settings
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.Generic.33425682?


File Info:

name: 761D0ED02533A6AEAE0F.mlw
path: /opt/CAPEv2/storage/binaries/a29536c3466e6cfcf7df83aa5c8324fb3573da3de344e52741d4be2218c3a40b
crc32: 217687CE
md5: 761d0ed02533a6aeae0f5d61721c2bf9
sha1: d75d413c815a520072dda48f7ca2d269ca5901e9
sha256: a29536c3466e6cfcf7df83aa5c8324fb3573da3de344e52741d4be2218c3a40b
sha512: 54440baf9aa7c815bc05bc076c108e75b9cef01a1849a823ed440e82185c666a3a3288e9adfdf1318ce6a150695340d774244c0ce8c1d6f091d0aba23466e121
ssdeep: 98304:rMOeh4v8Hm95SbWf+YFC9dehJJBtjN/A55SFn91GSG:AY8H4Qaf+HahHjN/AWXe
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D8260203F25280F2DA151A701577273AEE74D7510E61DFCBA7A4CD789D325A2A32F22E
sha3_384: 8e4885f32c8fff5effc02278e70dfd0d73bb781a86a869eb27cb3a91f827aae1434c9d974769face32b2839691bae65d
ep_bytes: 558bec6aff6808168600681c624f0064
timestamp: 2023-04-03 11:38:02

Version Info:

FileVersion: 1.0.0.0
FileDescription: 番茄程序[QQ:22099326]
ProductName: LOL人机脚本
ProductVersion: 1.0.0.0
LegalCopyright: 作者版权所有 请尊重并使用正版
Comments: 本程序使用易语言编写(http://www.eyuyan.com)
Translation: 0x0804 0x04b0

Trojan.Generic.33425682 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.lwoF
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.Generic.33425682
ClamAVWin.Malware.Trojanx-9951053-0
FireEyeGeneric.mg.761d0ed02533a6ae
McAfeeArtemis!761D0ED02533
Cylanceunsafe
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 005246d51 )
AlibabaRiskWare:Win32/IMEStartup.d21cc128
K7GWTrojan ( 005246d51 )
CrowdStrikewin/malicious_confidence_70% (D)
BitDefenderThetaGen:NN.ZexaF.36196.@t0@aqf4!KoH
CyrenW32/OnlineGames.HG.gen!Eldorado
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
Kasperskynot-a-virus:UDS:RiskTool.Win32.IMEStartup.wpk
BitDefenderTrojan.Generic.33425682
EmsisoftTrojan.Generic.33425682 (B)
VIPRETrojan.Generic.33425682
TrendMicroTROJ_GEN.R002C0WDD23
McAfee-GW-EditionBehavesLike.Win32.Generic.rc
Trapminemalicious.moderate.ml.score
SophosGeneric Reputation PUA (PUA)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.10248TU
Antiy-AVLTrojan/Win32.FlyStudio.a
XcitiumTrojWare.Win32.Agent.OSCF@5rs7jr
ArcabitTrojan.Generic.D1FE0912
ZoneAlarmnot-a-virus:RiskTool.Win32.IMEStartup.wpk
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
AhnLab-V3Malware/Win32.Generic.R103592
VBA32BScope.Backdoor.Poison
ALYacTrojan.Generic.33425682
MAXmalware (ai score=84)
MalwarebytesRamnit.Virus.FileInfector.DDS
TrendMicro-HouseCallTROJ_GEN.R002C0WDD23
RisingHackTool.IMEStartup!8.13A5B (TFE:5:n1bWNRAc77N)
MaxSecureDropper.Dinwod.frindll
FortinetW32/CoinMiner.PHP!tr
Cybereasonmalicious.c815a5
DeepInstinctMALICIOUS

How to remove Trojan.Generic.33425682?

Trojan.Generic.33425682 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment