Trojan

How to remove “Trojan.Generic.34307855”?

Malware Removal

The Trojan.Generic.34307855 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.34307855 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.Generic.34307855?


File Info:

name: 57686F229717ECE5B994.mlw
path: /opt/CAPEv2/storage/binaries/d803973b26aa954a20a7a5432a5c2fd667b16cd2d493a600b9a19ce6f984e8e8
crc32: A013DA47
md5: 57686f229717ece5b9949bb1fb3348db
sha1: e9c826be3de771aa69557d8fee657dc9f86e9717
sha256: d803973b26aa954a20a7a5432a5c2fd667b16cd2d493a600b9a19ce6f984e8e8
sha512: c5065aec2a51d3ee473ffde360199d5f2099a31d282c14d981d2f51fd3534ed794a855cd6b98e39b70aeb94cb0e3a011aef2934f0dd9b63c30290b472aa8b18b
ssdeep: 12288:VNxHzEZix8uWRgssJfmPLP6Mjl3E8i/SMZoS8iI3yfj3ovVI3yfj/:qZK8bRgsCmDFj5E8pMIiIgj0VIgj/
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D715AE10B5A144F1EA5525300C7B2F35AA7F8A590B14CBCF6368EDDC3D721A1AC373AA
sha3_384: 7d06330d54d83b5dc36a4656864be608d34e002ef72e0ba76cd675159aba554196cf0043ec57e0483e28c9de6aad70a8
ep_bytes: 558bec6aff68c8cb4a0068c481450064
timestamp: 2012-08-08 11:04:04

Version Info:

FileVersion: 1.0.0.0
FileDescription: 易语言程序
ProductName: 易语言程序
ProductVersion: 1.0.0.0
LegalCopyright: 作者版权所有 请尊重并使用正版
Comments: 本程序使用易语言编写(http://www.eyuyan.com)
Translation: 0x0804 0x04b0

Trojan.Generic.34307855 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.lywk
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.Generic.34307855
ClamAVWin.Trojan.Agent-583204
FireEyeGeneric.mg.57686f229717ece5
CAT-QuickHealDownloader.AdLoad.12395
SkyhighBehavesLike.Win32.Generic.ch
ALYacTrojan.Generic.34307855
Cylanceunsafe
SangforTrojan.Win32.Agent.Vglp
K7AntiVirusTrojan ( 005246d51 )
K7GWTrojan ( 005246d51 )
Cybereasonmalicious.e3de77
BitDefenderThetaGen:NN.ZexaF.36792.3q0@ayFMZblb
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
CynetMalicious (score: 100)
BitDefenderTrojan.Generic.34307855
NANO-AntivirusTrojan.Win32.PUPStudio.fcatjh
EmsisoftApplication.Generic (A)
F-SecureTrojan:W32/DelfInject.R
VIPRETrojan.Generic.34307855
Trapminesuspicious.low.ml.score
SophosMal/Generic-S
IkarusTrojan.Win32.Agent
JiangminTrojan.StartPage.gx
GoogleDetected
Antiy-AVLTrojan/Win32.FlyStudio.a
Kingsoftmalware.kb.a.1000
MicrosoftTrojan:Win32/Wacatac.B!ml
XcitiumWorm.Win32.Dropper.RA@1qraug
ArcabitTrojan.Generic.D20B7F0F
GDataWin32.Trojan.PSE.10S0A6W
VaristW32/Trojan.GRW.gen!Eldorado
McAfeeArtemis!57686F229717
MAXmalware (ai score=84)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002H0CJC23
YandexTrojan.GenAsa!Iz8R/9UoaZo
SentinelOneStatic AI – Malicious PE
FortinetW32/CoinMiner.PHP!tr
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Trojan.Generic.34307855?

Trojan.Generic.34307855 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment