Trojan

Should I remove “Trojan.Generic.33714439”?

Malware Removal

The Trojan.Generic.33714439 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.33714439 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Deletes executed files from disk
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.Generic.33714439?


File Info:

name: 6B402F347CC97C4261C4.mlw
path: /opt/CAPEv2/storage/binaries/a955e76aba66460f176369fe289ec99d79c10b5e7a3c089a7a60e932fb3f8778
crc32: A32E9696
md5: 6b402f347cc97c4261c47a4d24d690c7
sha1: ab2fcc5b6c2e655ca86a8df80e2dc7a18fcb8345
sha256: a955e76aba66460f176369fe289ec99d79c10b5e7a3c089a7a60e932fb3f8778
sha512: 7d8d47bf73a1f3a18ef626170ead8f5117ad96271c3f8e5ce396a95db05608feab65bb88e988585090c6e0cfcdc23a9e70f5d8757d403615efd3c9762490dc78
ssdeep: 49152:kK/lrXzgYU0CgULuJsi5v2Soj5j7mkys4I5TAbnq4Pr4Gmz8OzPdspV9u1P:LPg9w5JZ5oj7moptAbnqi4Gm8WdspV96
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FFD53313A3D708B1F59B19364527D800AD637BB90DF0B2253FBDCA8E0DB96416C76B62
sha3_384: 2c21e96ddb82fe31a1d7e3a15731385c604a5fbd721738951d8e4f660bc4b54efc8935899324f09471fd66bf1e2d4882
ep_bytes: 558bec83c4a453565733c08945c48945
timestamp: 2018-06-14 13:27:46

Version Info:

Comments: This installation was built with Inno Setup.
CompanyName: Toy-Zemlak and Sons
FileDescription: Dicta ratione - 416bf9f83759f7f9461629ca00b73289
FileVersion:
LegalCopyright: Copyright 2019 Toy-Zemlak and Sons
ProductName: Dicta ratione - 416bf9f83759f7f9461629ca00b73289
ProductVersion: 3.10.5.8
Translation: 0x0000 0x04b0

Trojan.Generic.33714439 also known as:

LionicTrojan.Win32.Ekstak.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Generic.33714439
FireEyeTrojan.Generic.33714439
McAfeeArtemis!6B402F347CC9
MalwarebytesAdware.DLAssistant.Generic
SangforDropper.Win32.Ekstak.Vq7z
K7AntiVirusTrojan-Downloader ( 00046b4b1 )
AlibabaTrojanDropper:Win32/Ekstak.d6f5009d
K7GWTrojan-Downloader ( 00046b4b1 )
CrowdStrikewin/malicious_confidence_100% (W)
SymantecTrojan.Gen.MBT
ESET-NOD32Win32/TrojanDropper.Agent.SEJ
APEXMalicious
CynetMalicious (score: 99)
KasperskyTrojan.Win32.Ekstak.rakf
BitDefenderTrojan.Generic.33714439
NANO-AntivirusTrojan.Win32.Ekstak.jwlvme
AvastNSIS:ICLoader-G [Adw]
TencentWin32.Trojan.FalseSign.Lflw
EmsisoftTrojan.Generic.33714439 (B)
F-SecureHeuristic.HEUR/AGEN.1333118
VIPRETrojan.Generic.33714439
TrendMicroTROJ_GEN.R002C0WEF23
McAfee-GW-EditionArtemis!Trojan
SophosMal/Generic-S
GDataTrojan.Generic.33714439
AviraHEUR/AGEN.1333118
ArcabitTrojan.Generic.D2027107
ZoneAlarmTrojan.Win32.Ekstak.rakf
MicrosoftProgram:Win32/Wacapew.C!ml
ALYacTrojan.Generic.33714439
MAXmalware (ai score=87)
Cylanceunsafe
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0WEF23
MaxSecureTrojan.Malware.73828843.susgen
FortinetW32/Agent.SEJ!tr
AVGNSIS:ICLoader-G [Adw]
DeepInstinctMALICIOUS

How to remove Trojan.Generic.33714439?

Trojan.Generic.33714439 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment