Trojan

Trojan.Generic.34252616 removal guide

Malware Removal

The Trojan.Generic.34252616 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.34252616 virus can do?

  • Sample contains Overlay data
  • Performs HTTP requests potentially not found in PCAP.
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Detects VMware through the presence of a file
  • Attempts to modify proxy settings
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.Generic.34252616?


File Info:

name: 2A4D6BF188D1F9F54FB8.mlw
path: /opt/CAPEv2/storage/binaries/fac233a41a98a995928549d009f894c8774bc6908e7fb2df1b594e4fde8da2c8
crc32: 99B3E45C
md5: 2a4d6bf188d1f9f54fb88811fdc953fd
sha1: 1cee2f3bab25116595f7c12938ea0d0638e4f6a4
sha256: fac233a41a98a995928549d009f894c8774bc6908e7fb2df1b594e4fde8da2c8
sha512: 9e15b948649d8ba7ee59c03023bdffdde0fb58af83f5c33adf97f9c492f4590e319944333dd28e1313f50f0db5dae18665a1953067549df74193d06395d3284c
ssdeep: 12288:jkxDoouVA2nxKkh0vdRgQriDJOIZW+yBGQowlNCh4aX6zQ4B:9RmJkqoQrilOIQ+yMxGaX6zQa
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FBF49F22F9D68035C2E336B18E7AF3699A3C6D261326D29737C43E355E705816B39723
sha3_384: dd02f9fcbdeb2dadb75e8e1c52f79f800913fe4e760e63ccc621e534829ea28e82e8ed62578ec4787148d294e15ed4e4
ep_bytes: e816900000e989feffffcccccccccc55
timestamp: 2011-12-23 10:59:31

Version Info:

FileDescription: 应用软件
FileVersion: 3, 3, 8, 0
Comments: 应用软件
Translation: 0x0809 0x04b0

Trojan.Generic.34252616 also known as:

MicroWorld-eScanTrojan.Generic.34252616
FireEyeTrojan.Generic.34252616
SkyhighBehavesLike.Win32.Ransomware.bh
ALYacTrojan.Generic.34252616
K7AntiVirusTrojan ( 005ac76e1 )
K7GWTrojan ( 005ac76e1 )
ArcabitTrojan.Generic.D20AA748
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of Win32/Autoit.OPC
APEXMalicious
BitDefenderTrojan.Generic.34252616
AvastFileRepMalware [Misc]
EmsisoftTrojan.Generic.34252616 (B)
VIPRETrojan.Generic.34252616
Trapminesuspicious.low.ml.score
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.Gen
MAXmalware (ai score=88)
GDataTrojan.Generic.34252616
GoogleDetected
MalwarebytesGeneric.Malware/Suspicious
TrendMicro-HouseCallTROJ_GEN.R023H09JV23
IkarusTrojan.Win32.Autoit
MaxSecureTrojan.Autoit.AZA
FortinetW32/Autoit.OPC!tr
AVGFileRepMalware [Misc]
Cybereasonmalicious.bab251
DeepInstinctMALICIOUS

How to remove Trojan.Generic.34252616?

Trojan.Generic.34252616 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment