Trojan

Trojan.Generic.35445776 removal guide

Malware Removal

The Trojan.Generic.35445776 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.35445776 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Executed a command line with /C or /R argument to terminate command shell on completion which can be used to hide execution
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Behavioural detection: Transacted Hollowing
  • CAPE detected the embedded win api malware family
  • Attempts to modify proxy settings
  • Appears to use command line obfuscation
  • Deletes executed files from disk
  • Touches a file containing cookies, possibly for information gathering
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Trojan.Generic.35445776?


File Info:

name: 6752EB691C462776A8A2.mlw
path: /opt/CAPEv2/storage/binaries/e707f6be6d72eaca9c0d5ae79f3e34473009214738da0b0921ab7e9f17c0a461
crc32: D991FE44
md5: 6752eb691c462776a8a2c5e69f9d6520
sha1: 3703964ea8df65fc1f766607c11ba16f89519410
sha256: e707f6be6d72eaca9c0d5ae79f3e34473009214738da0b0921ab7e9f17c0a461
sha512: a5db03e906e8de413210fab8413c561b800aa3624c06d11a2c5352c1cc0e7482658e171dc40244d06e8feda3ff699be27c20677b73f7e84840fb848e4cc2122d
ssdeep: 98304:VMYazcDCl0tdNNQAZVuqqV3yQlU9KDhdLCq4vRAMdcbh3:VMYwETNN5cLvcq8AMdcd
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T128267C30364AC93BDA6605B01A2CAADF512CAF660B7154DB73CC2D2E1A795C31737E27
sha3_384: 7dd2636f31cd34d434e8fc995f814d55ff6a23656a31a539d26eeacef71208bebc56a02d3312d94624497991cd9077f5
ep_bytes: e83a060000e97afeffff8b4df464890d
timestamp: 2022-06-23 14:19:22

Version Info:

CompanyName: MMT WINDOWS TECH
FileDescription: IDM - MMT WINDOWS TECH Installer
FileVersion: 1.0.0
InternalName: IDM - MMT WINDOWS TECH
LegalCopyright: Copyright (C) 2024 MMT WINDOWS TECH
OriginalFileName: IDM - MMT WINDOWS TECH.exe
ProductName: IDM - MMT WINDOWS TECH
ProductVersion: 1.0.0
Translation: 0x0409 0x04b0

Trojan.Generic.35445776 also known as:

BkavW32.Common.4BAB79EB
LionicTrojan.Win32.Powedon.4!c
MicroWorld-eScanTrojan.Generic.35445776
FireEyeTrojan.Generic.35445776
ALYacTrojan.Generic.35445776
Cylanceunsafe
SangforTrojan.Win32.Powedon.Vm5f
AlibabaTrojan:Win32/Powedon.cee09e28
BitDefenderThetaGen:NN.ZexaF.36802.@x3@aCToJ6ii
SymantecML.Attribute.HighConfidence
KasperskyHEUR:Trojan.Multi.Powedon.c
BitDefenderTrojan.Generic.35445776
AvastWin32:Malware-gen
EmsisoftTrojan.Generic.35445776 (B)
F-SecureTrojan.TR/Redcap.omcps
VIPRETrojan.Generic.35445776
TrendMicroTROJ_GEN.R03BC0XD124
SophosMal/Generic-S
MAXmalware (ai score=84)
GDataTrojan.Generic.35445776
AviraTR/Redcap.omcps
KingsoftWin32.Troj.Unknown.a
ArcabitTrojan.Generic.D21CDC10
ZoneAlarmHEUR:Trojan.Multi.Powedon.c
CynetMalicious (score: 99)
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R03BC0XD124
RisingTrojan.PSRunner/LNK!1.BADE (CLASSIC)
MaxSecureTrojan.Malware.73647381.susgen
FortinetW32/PossibleThreat
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Trojan.Generic.35445776?

Trojan.Generic.35445776 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment