Trojan

Trojan.Generic.34572517 (file analysis)

Malware Removal

The Trojan.Generic.34572517 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.34572517 virus can do?

  • Sample contains Overlay data
  • HTTPS urls from behavior.
  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

How to determine Trojan.Generic.34572517?


File Info:

name: 51F1EE000F039C654087.mlw
path: /opt/CAPEv2/storage/binaries/f3590d3c5ff7579703dd4810193a3e5a2bd51e50168208173629ebb2cc8e125f
crc32: BB8AC741
md5: 51f1ee000f039c6540876d4588fd5b3d
sha1: 0e6d2d95d2d41648cd72b348e8b6541d51d29d65
sha256: f3590d3c5ff7579703dd4810193a3e5a2bd51e50168208173629ebb2cc8e125f
sha512: 7b799f73ae146947bc59faab310ba2b8404b44914d9130900c8389f80d80e58a61dd40789c1c52570e178a698d7ce785a5dc6f4601e947df0c4f763064efad8a
ssdeep: 6144:JGraJcI0qv6KSTRR4WX/M1JFQw1HKAxkdOo9Ub:tN0qvRSjjk37KAhd
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FB241207B5C2CA77EA9A2E72243213BDB7758A5845615F03DF507F9F3CB260789061E1
sha3_384: 7af24e6af390664355b98c6a91e1cc3ad8a97bb778afdc99ccb3d865c5c2b7f62d293fca069a98f89b5a71844f151fff
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2008-08-16 20:26:20

Version Info:

0: [No Data]

Trojan.Generic.34572517 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Lotok.m!c
MicroWorld-eScanTrojan.Generic.34572517
FireEyeTrojan.Generic.34572517
SkyhighBehavesLike.Win32.Dropper.dc
ALYacTrojan.Generic.34572517
Cylanceunsafe
ZillyaDownloader.Agent.Win32.542584
SangforTrojan.Win32.SilverFoxUnpack.swkcea
K7AntiVirusTrojan-Downloader ( 005af2601 )
AlibabaBackdoor:Win32/Lotok.790ef7c8
K7GWTrojan-Downloader ( 005af2601 )
CrowdStrikewin/malicious_confidence_100% (W)
ArcabitTrojan.Generic.D20F88E5
SymantecTrojan.Gen.MBT
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/TrojanDownloader.Agent.HKB
CynetMalicious (score: 100)
APEXMalicious
KasperskyBackdoor.Win32.Lotok.tih
BitDefenderTrojan.Generic.34572517
AvastWin32:BackdoorX-gen [Trj]
TencentTrojan.Win32.Inject_yh.le
EmsisoftTrojan.Generic.34572517 (B)
F-SecureTrojan.TR/AD.Nekark.vigjw
DrWebTrojan.DownLoader46.45922
VIPRETrojan.Generic.34572517
TrendMicroTROJ_GEN.R002C0PAG24
Trapminesuspicious.low.ml.score
SophosMal/Generic-S
AviraTR/AD.Nekark.vigjw
KingsoftWin32.Hack.Lotok.tih
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmBackdoor.Win32.Lotok.tih
GDataTrojan.Generic.34572517
GoogleDetected
McAfeeRDN/Generic Downloader.x
MAXmalware (ai score=81)
VBA32BScope.Trojan.Downloader
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R002C0PAG24
RisingDownloader.Agent!1.F2C2 (CLASSIC)
IkarusTrojan-Downloader.Win32.Agent
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.HKB!tr
AVGWin32:BackdoorX-gen [Trj]
Cybereasonmalicious.5d2d41
DeepInstinctMALICIOUS

How to remove Trojan.Generic.34572517?

Trojan.Generic.34572517 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment