Trojan

Trojan.Generic.35444024 (file analysis)

Malware Removal

The Trojan.Generic.35444024 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.35444024 virus can do?

  • Sample contains Overlay data
  • Uses Windows utilities for basic functionality
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Deletes executed files from disk

How to determine Trojan.Generic.35444024?


File Info:

name: 13E691AC024700083A7C.mlw
path: /opt/CAPEv2/storage/binaries/74ae7b4e44dcdeb70740c59c5633da6a5b1192365c9249974c2d163bd9d63980
crc32: AFDE7A88
md5: 13e691ac024700083a7cead9660b15d4
sha1: cc591f85fb7c3218e9fa57be637aacdd3bed043e
sha256: 74ae7b4e44dcdeb70740c59c5633da6a5b1192365c9249974c2d163bd9d63980
sha512: 3b370894077d203f0e52289f6df2cdf785fa8261211d97705227d07de45804cfada7f2356796a0fa704839558e1f9b515363d59a5c21da2e7285733dd57492ec
ssdeep: 6144:FnOsa/sWU9QYXCbzFKXnKEjnTReZ/Eo4TpTM5mPnAUltSy6IP7XA1wPtvgr:FnOf/sWU9QPbzanKEjnoZ8o4TpTM5mP8
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T18A440A1FB74913B2C6C203B1260B69F2F72EA579236986E3149CC05D1366FF883B7695
sha3_384: 991655f3d5026bd39bf962f56a28f1d06f1d067c49ceb40f659c12c92f0051b2a0ee4e640d4b8ef5f4520663b7756c0a
ep_bytes: 6800010000680000000068d8e34000e8
timestamp: 2014-01-31 16:06:34

Version Info:

CompanyName: Scanvec
FileVersion: 1,0,0,0
ProductName: Flexisign
ProductVersion: 1.0.0.0
LegalCopyright: www.signs101.com
Translation: 0x0000 0x04e4

Trojan.Generic.35444024 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Generic.35444024
SkyhighBehavesLike.Win32.Generic.dm
MalwarebytesGeneric.Malware.AI.DDS
VIPRETrojan.Generic.35444024
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
ArcabitTrojan.Generic.D21CD538
VirITBackdoor.Win32.Generic.CNLA
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32BAT/Agent.QBP
APEXMalicious
ClamAVWin.Packed.Lazy-10001745-0
KasperskyVHO:Hoax.Win32.Agent.gen
BitDefenderTrojan.Generic.35444024
NANO-AntivirusVirus.Win32.Sality.bgiylc
SUPERAntiSpywareTrojan.Agent/Gen-Dropper
AvastWin32:WrongInf-E [Susp]
TencentTrojan.Win32.Agent.kbv
EmsisoftTrojan.Generic.35444024 (B)
GoogleDetected
F-SecureTrojan.TR/Crypt.XPACK.Gen2
DrWebBAT.Siggen.250
ZillyaTool.Agent.Win32.138096
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.13e691ac02470008
SophosGeneric ML PUA (PUA)
IkarusTrojan.Tiggre
JiangminTrojanDropper.Daws.fyt
VaristW32/Trojan.OTMT-9114
AviraTR/Crypt.XPACK.Gen2
Antiy-AVLTrojan/Script.Phonzy.b
Kingsoftmalware.kb.a.960
MicrosoftTrojan:Win32/Lazy.AB!MTB
ZoneAlarmVHO:Hoax.Win32.Agent.gen
GDataWin32.Trojan.PSE.MN407Y
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.R641775
BitDefenderThetaGen:NN.ZexaF.36802.qC3@aKoWTud
ALYacTrojan.Generic.35444024
MAXmalware (ai score=82)
Cylanceunsafe
PandaTrj/Genetic.gen
ZonerTrojan.Win32.64771
RisingPUF.Agent!8.1B6B (TFE:5:POpTqWlroeE)
YandexRiskware.Hoax!uR2CVNdr4uY
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/BAT.OBP!tr
AVGWin32:WrongInf-E [Susp]
DeepInstinctMALICIOUS

How to remove Trojan.Generic.35444024?

Trojan.Generic.35444024 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment