Trojan

Trojan.Generic.34175240 removal guide

Malware Removal

The Trojan.Generic.34175240 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.34175240 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.Generic.34175240?


File Info:

name: 80786FDFD20D87411387.mlw
path: /opt/CAPEv2/storage/binaries/6d15e2ff5884954f88e6d5dace824bb11703da59ff6c5bfc0864ef9fa38a67ae
crc32: CFDF7D33
md5: 80786fdfd20d87411387283456b25e80
sha1: 96285b7b772095e141975bc69af82c4ab3105a18
sha256: 6d15e2ff5884954f88e6d5dace824bb11703da59ff6c5bfc0864ef9fa38a67ae
sha512: 455d5f33a710239487f2bf4bee522c2b2497fa61e9ecd6687933701d175cf749b027d254a401c9eb0f644830c152636e7988f4cccf3908ea0a7487b2ec7be9bc
ssdeep: 24576:WtpiE3iGwPeDwV0vOVyNzKRBehm9dN3YvandAk+hr7Av:3DGwPeVOVsYs8dFYvanGVhr7Av
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T173652392E671D3C2F0AC413554D74F680FB8EBA2802AE7179BE85CFA1E926046D47D4F
sha3_384: 49c6f8645ad0a36d77ae47e80ad9324a5f3e95daaaaf277db7367fb3a288b33786b7a32bb4364572ef3cdbfab0bb6b0c
ep_bytes: e80600000050e8bb010000558bec81c4
timestamp: 1972-12-25 05:33:23

Version Info:

FileVersion: 1.0.0.0
FileDescription: 安全稳定快速
ProductName: 腾讯最新穿越火线刷枪系统
ProductVersion: 1.0.0.0
CompanyName: 腾讯最新穿越火线刷枪系统
LegalCopyright: WwW.hkqqb.Com
Comments: 腾讯最新穿越火线刷枪系统
Translation: 0x0804 0x04b0

Trojan.Generic.34175240 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Genome.m1as
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.Generic.34175240
FireEyeGeneric.mg.80786fdfd20d8741
SkyhighBehavesLike.Win32.Generic.tc
ALYacTrojan.Generic.34175240
Cylanceunsafe
VIPRETrojan.Generic.34175240
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 005194cc1 )
BitDefenderTrojan.Generic.34175240
K7GWTrojan ( 005194cc1 )
Cybereasonmalicious.b77209
VirITTrojan.Win32.Click2.DFZZ
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Packed.FlyStudio potentially unwanted
APEXMalicious
AlibabaTrojan:Win32/Generic.c35653cc
RisingTrojan.Kazy!1.6838 (CLASSIC)
EmsisoftTrojan.Generic.34175240 (B)
Trapminemalicious.high.ml.score
SophosGeneric Reputation PUA (PUA)
IkarusTrojan.Patched
MAXmalware (ai score=85)
JiangminTrojan/Genome.djct
Webroot
GoogleDetected
VaristW32/S-759a1e41!Eldorado
MicrosoftTrojan:Win32/Wacatac.A!ml
XcitiumTrojWare.Win32.FlyStudio.~UJ@1sa9s6
ArcabitTrojan.Generic.D2097908
GDataWin32.Riskware.FlyStudio.C
CynetMalicious (score: 100)
DeepInstinctMALICIOUS
MalwarebytesGeneric.Malware.AI.DDS
TrendMicro-HouseCallTROJ_GEN.R002H0CJ323
SentinelOneStatic AI – Malicious PE
MaxSecureVirus.W32.Flystudio.Y
FortinetW32/FlyStudio.C!tr
AVGWin32:Evo-gen [Trj]
AvastWin32:Evo-gen [Trj]
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Trojan.Generic.34175240?

Trojan.Generic.34175240 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment