Trojan

About “Trojan.Generic.34275855” infection

Malware Removal

The Trojan.Generic.34275855 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.34275855 virus can do?

  • Performs HTTP requests potentially not found in PCAP.
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.Generic.34275855?


File Info:

name: 164E2408E80A58F09AB1.mlw
path: /opt/CAPEv2/storage/binaries/83760d7f9da933b67595502454d9e463144bfc9fc6b23bb96d83af450a1b33df
crc32: E774ED34
md5: 164e2408e80a58f09ab17ecfab8ba8aa
sha1: 6acd49a7833d20ae74338ca1e753e9309c0346eb
sha256: 83760d7f9da933b67595502454d9e463144bfc9fc6b23bb96d83af450a1b33df
sha512: 0bfb588c26ce3821ecdad9584223bdff89a74ee375e7ae1c1fb60f2a7c8b5e9cf134b4fb352c1ee083fcfa55b5586bc19a35e1ce45310e5fc8ea65d6c6d917b3
ssdeep: 24576:z6R171rVkr5b8c0mhPqmQ+pT98ywDoYEERN71jv9j03n:u7kd2CtZrCW2v+
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19E3533698FA7AC42D123427501DBF57A7E33E9EC6AD08F5B0798348A3ABB7343264505
sha3_384: 6630fc32489d658f849ba4ce52c0b254f7b4fdeab3754b37c746a2440462d7ca1c46e2a36c97be00c92a161c1951be5e
ep_bytes: 60be00d064008dbe0040dbff57eb0b90
timestamp: 2012-07-26 02:26:23

Version Info:

FileVersion: 1.0.0.0
FileDescription: 易语言程序
ProductName: 易语言程序
ProductVersion: 1.0.0.0
LegalCopyright: 作者版权所有 请尊重并使用正版
Comments: 本程序使用易语言编写(http://www.eyuyan.com)
Translation: 0x0804 0x04b0

Trojan.Generic.34275855 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Scar.lpjJ
Elasticmalicious (moderate confidence)
SkyhighBehavesLike.Win32.Generic.tc
McAfeeArtemis!164E2408E80A
MalwarebytesGeneric.Malware.AI.DDS
SangforTrojan.Win32.Agent.V52y
K7AntiVirusTrojan ( 005246d51 )
BitDefenderTrojan.Generic.34275855
K7GWTrojan ( 005246d51 )
Cybereasonmalicious.7833d2
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
CynetMalicious (score: 100)
NANO-AntivirusTrojan.Win32.Agent.djtbwy
MicroWorld-eScanTrojan.Generic.34275855
RisingTrojan.Generic@AI.100 (RDML:sF8SJUUqQy8wWYqP5xewGg)
SophosGeneric Reputation PUA (PUA)
DrWebTrojan.PWS.Wsgame.50192
VIPRETrojan.Generic.34275855
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.164e2408e80a58f0
EmsisoftApplication.Generic (A)
JiangminTrojan/StartPage.qfe
VaristW32/Trojan.GRW.gen!Eldorado
Antiy-AVLTrojan/Win32.Genome
MicrosoftPUA:Win32/Puwaders.C!ml
ArcabitTrojan.Generic.D20B020F
GDataWin32.Trojan.PSE.1OV7PVV
GoogleDetected
BitDefenderThetaGen:NN.ZexaF.36792.cnKfaOFJUQkb
ALYacTrojan.Generic.34275855
MAXmalware (ai score=89)
DeepInstinctMALICIOUS
VBA32BScope.Trojan.Reconyc
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002H09K623
SentinelOneStatic AI – Malicious PE
MaxSecureDropper.Dinwod.frindll
FortinetMalicious_Behavior.SB
AVGWin32:Malware-gen
AvastWin32:Malware-gen
CrowdStrikewin/grayware_confidence_60% (W)

How to remove Trojan.Generic.34275855?

Trojan.Generic.34275855 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment