Trojan

Trojan.Generic.35611971 malicious file

Malware Removal

The Trojan.Generic.35611971 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.35611971 virus can do?

  • A file was accessed within the Public folder.
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Trojan.Generic.35611971?


File Info:

name: 8305963F900BDC8336CA.mlw
path: /opt/CAPEv2/storage/binaries/3c40ac494f472bf7556610af0309424dea80daeb06b3d3531481086cde2412e1
crc32: 7386AAB7
md5: 8305963f900bdc8336ca9e22891a7b05
sha1: 30ec9a825e778662fc9a4cf6100c1ee2e6c6c9a1
sha256: 3c40ac494f472bf7556610af0309424dea80daeb06b3d3531481086cde2412e1
sha512: d5fa5e76ee3f296515b4f8e7414e776974aad81120cab267c2556a92b9c0c782a60a0f0d498b4e9d54d51b21b0343472b64e45ccf89cc8859d2338ab4ad132d8
ssdeep: 196608:k5MmmPZTDDu1W4pTGzfgJbavxYg24u9ngPN8bPwFX719InUGS+yVbbcEEnuzfPsQ:kuknWUpTj9n9cMUN+ccEE4lrc//F
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D4F601617B3C806FD6D1A23F497DE22E59EAAC6D19F1070321913B6B68F37538928713
sha3_384: 212767d0076fc40a47dd7ac3dd5a556d50a5d92c5a1d726a7a1a942da76bc89bbd85ae8a820ecee87df18fd0ecff8ab3
ep_bytes: e888a40000e97ffeffff3b0d90f46000
timestamp: 2024-02-24 06:48:04

Version Info:

CompanyName: TODO:
FileDescription: frsywja
FileVersion: 2.0.0.1
InternalName: frsywja.exe
LegalCopyright: TODO: (C) 。 保留所有权利。
OriginalFilename: frsywja.exe
ProductName: TODO:
ProductVersion: 2.0.0.1
Translation: 0x0804 0x04b0

Trojan.Generic.35611971 also known as:

LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanTrojan.Generic.35611971
FireEyeTrojan.Generic.35611971
SkyhighBehavesLike.Win32.BadFile.vc
ALYacTrojan.Generic.35611971
Cylanceunsafe
SangforTrojan.Win32.Agent.Vovd
CrowdStrikewin/malicious_confidence_90% (W)
K7GWTrojan ( 005afbdb1 )
K7AntiVirusTrojan ( 005afbdb1 )
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Agent_AGen.CZE
APEXMalicious
TrendMicro-HouseCallTROJ_GEN.R002H0AD324
BitDefenderTrojan.Generic.35611971
AvastWin32:Evo-gen [Trj]
RisingTrojan.Agent!8.B1E (TFE:5:3IaS3vue1oG)
EmsisoftTrojan.Generic.35611971 (B)
GoogleDetected
F-SecureHeuristic.HEUR/AGEN.1372192
VIPRETrojan.Generic.35611971
SophosMal/Generic-S
IkarusTrojan.Win32.Krypt
VaristW32/ABRisk.OBPG-4928
AviraHEUR/AGEN.1372192
Antiy-AVLTrojan/Win32.GenKryptik
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Generic.D21F6543
GDataTrojan.Generic.35611971
CynetMalicious (score: 99)
AhnLab-V3Malware/Win.Generic.C5607839
McAfeeArtemis!8305963F900B
MAXmalware (ai score=80)
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/Chgt.AD
FortinetW32/GenKryptik.FUDT!tr
BitDefenderThetaGen:NN.ZexaF.36802.@x0@a0B3j@db
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
alibabacloudTrojan:Win/Agent_AGen.CZE

How to remove Trojan.Generic.35611971?

Trojan.Generic.35611971 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment