Trojan

Trojan.Generic.33969455 (file analysis)

Malware Removal

The Trojan.Generic.33969455 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.33969455 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Deletes executed files from disk

How to determine Trojan.Generic.33969455?


File Info:

name: A8A61A6A738949D1F57E.mlw
path: /opt/CAPEv2/storage/binaries/df157a43ede6bb73fe0d0b71391a74e567eb80857618a9c0588fc0424c99727f
crc32: 4F2CEE17
md5: a8a61a6a738949d1f57eb9cbf1bc78f9
sha1: 44372abe96a074b355671f024b5dd5b7d5b52e75
sha256: df157a43ede6bb73fe0d0b71391a74e567eb80857618a9c0588fc0424c99727f
sha512: e8420e2e029e21dc7273839b7bcccb6fc0dde238716548ccbeda8144a739b56d1e5ab886cadfb9ea2525c40f9c56e8d7cdb7dc7fd89da23d523ee685b8854788
ssdeep: 98304:V7BfbBW+ObJ5bP1u5GJd9FuaByNZWmRI2rcTS+KsQW:JBfN4FTukXZBAZ5l+KsQW
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BB163362FA7F0DF8D1459632949C833F70AB2A21963C73E5B5A4A2CD4FBE1876CC1215
sha3_384: 76b71831f9088b9acf009067f57ba56b27b1fea0ff64b495733fbcd45219334e724b4747ff71e44b379edf6686d09339
ep_bytes: 558bec83c4cc53565733c08945f08945
timestamp: 1992-06-19 22:22:17

Version Info:

Comments: This installation was built with Inno Setup: http://www.innosetup.com
CompanyName: NipSaver Software
FileDescription: NipSaver Setup
FileVersion:
LegalCopyright:
Translation: 0x0409 0x04e4

Trojan.Generic.33969455 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Ekstak.4!c
MicroWorld-eScanTrojan.Generic.33969455
FireEyeTrojan.Generic.33969455
McAfeeArtemis!A8A61A6A7389
Cylanceunsafe
SangforDropper.Win32.Ekstak.Vwnk
AlibabaTrojanDropper:Win32/Ekstak.b32b5802
K7GWTrojan ( 005722f11 )
K7AntiVirusTrojan ( 005722f11 )
CyrenW32/Agent.GPW.gen!Eldorado
SymantecTrojan.Gen.MBT
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/TrojanDropper.Agent.SLC
KasperskyTrojan.Win32.Ekstak.anwui
BitDefenderTrojan.Generic.33969455
AvastWin32:Trojan-gen
TencentWin32.Trojan.Ekstak.Kmnw
EmsisoftTrojan.Generic.33969455 (B)
VIPRETrojan.Generic.33969455
TrendMicroTROJ_GEN.R002C0XFQ23
McAfee-GW-EditionBehavesLike.Win32.ObfuscatedPoly.wc
SophosMal/Generic-S
IkarusTrojan.Inno.Agent
GDataTrojan.Generic.33969455
ArcabitTrojan.Generic.D206552F
ZoneAlarmTrojan.Win32.Ekstak.anwui
MicrosoftTrojan:Win32/Wacatac.B!ml
AhnLab-V3Trojan/Win.Trojan-gen.C5445227
ALYacTrojan.Generic.33969455
MAXmalware (ai score=84)
MalwarebytesAdware.DownloadAssistant
TrendMicro-HouseCallTROJ_GEN.R002C0XFQ23
MaxSecureTrojan.Malware.210316451.susgen
FortinetW32/Agent.SLC!tr
AVGWin32:Trojan-gen
DeepInstinctMALICIOUS

How to remove Trojan.Generic.33969455?

Trojan.Generic.33969455 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment