Trojan

Trojan.Generic.33800588 removal instruction

Malware Removal

The Trojan.Generic.33800588 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.33800588 virus can do?

  • Sample contains Overlay data
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Trojan.Generic.33800588?


File Info:

name: 136C83590804090CA176.mlw
path: /opt/CAPEv2/storage/binaries/0b5d9a8b249a13b4e3cacfac267226271825a0f5bf922ef7683947870c70d941
crc32: 636923E3
md5: 136c83590804090ca1769f05d1e1bc28
sha1: c16043999da21651ea35fb4a48056008cff4aa8b
sha256: 0b5d9a8b249a13b4e3cacfac267226271825a0f5bf922ef7683947870c70d941
sha512: 27e749a2391cbb550dc2903028da223db6a00507944435b5da71f3ed13434fdade7a7c90fc57b0199699df4670b93bf4f7fd5c277efa23619725aa18790bf14a
ssdeep: 12288:B7PfxZirwWyw6g/fKsyeY14VZ/o3bnGi/Nhu:B7PfxZirwlwj3tyt4v/onGwN8
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1AF059F12F5E9C0F5D64D153109AB773ADA394A424B35CBC3B764EDA92D33240FA3A31A
sha3_384: abd5f417aa1a8b61016c1d5f94615dc50fd607af0dce2cbbafc45a99e95c490307adcdd275305d121891de1af8726be7
ep_bytes: 558bec538b5d08568b750c578b7d1085
timestamp: 2018-10-06 12:21:32

Version Info:

FileVersion: 1.0.0.0
FileDescription: 易语言程序
ProductName: 易语言程序
ProductVersion: 1.0.0.0
LegalCopyright: 作者版权所有 请尊重并使用正版
Comments: 本程序使用易语言编写(http://www.eyuyan.com)
Translation: 0x0804 0x04b0

Trojan.Generic.33800588 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Multi.Generic.lhju
MicroWorld-eScanTrojan.Generic.33800588
FireEyeGeneric.mg.136c83590804090c
SkyhighBehavesLike.Win32.Generic.bh
McAfeeGeneric.gn
MalwarebytesGeneric.Malware.AI.DDS
SangforSuspicious.Win32.Save.ins
CrowdStrikewin/malicious_confidence_70% (D)
ArcabitTrojan.Generic.D203C18C
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Flystudio-10008100-0
BitDefenderTrojan.Generic.33800588
NANO-AntivirusTrojan.Win32.Symmi.dmunmm
AvastWin32:Malware-gen
EmsisoftTrojan.Generic.33800588 (B)
VIPRETrojan.Generic.33800588
SophosGeneric Reputation PUA (PUA)
SentinelOneStatic AI – Malicious PE
VaristW32/Trojan.GRW.gen!Eldorado
Antiy-AVLGrayWare/Win32.Uwasson
XcitiumTrojWare.Win32.Agent.OSCF@5rs7jr
MicrosoftTrojan:Win32/Emotet!ml
GDataWin32.Application.PSE.1OV7PVV
GoogleDetected
AhnLab-V3Malware/Win.Generic.C4470258
ALYacTrojan.Generic.33800588
MAXmalware (ai score=89)
Cylanceunsafe
IkarusTrojan.Win32.Agent
MaxSecureDropper.Dinwod.frindll
FortinetRiskware/PackedFlyStudio
BitDefenderThetaGen:NN.ZedlaF.36744.Xu9@amRoPAbb
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Trojan.Generic.33800588?

Trojan.Generic.33800588 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment