Trojan

Trojan.Generic.35615579 (file analysis)

Malware Removal

The Trojan.Generic.35615579 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.35615579 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan.Generic.35615579?


File Info:

name: 0BCFE67677134D552433.mlw
path: /opt/CAPEv2/storage/binaries/bbae799e575b4dc2e49ff68fdb92cc555dc2398c1b65f2fdc937f9a5b130bc4f
crc32: DC0851F5
md5: 0bcfe67677134d5524332d92370ccb4e
sha1: 82e8e4728c7b36f914122220a9039d8ee24c4419
sha256: bbae799e575b4dc2e49ff68fdb92cc555dc2398c1b65f2fdc937f9a5b130bc4f
sha512: ea7c658edb46d57aad2d795ec807cf89d37f8205d8011c7e7f7292bd8d5c82a98833637ee8a4f0db5a1ad984a7cc466231a8ef9340f224417da949126821c8d3
ssdeep: 98304:YRT/Hrfc0AqTUvUpg6qXo2hTorR5WRYjjlx8GixsecFs:CHDIcmWvWcj38mxs
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T155E53326194B0097DE64103512EA83BEEB3D639D65DC09AD77B8BDD68CB8FE30163352
sha3_384: c7ce917c20dbdd78591116f586f5de7973018aba35a3bbf52da2d9e5f8dfedfe4e158593853caf99ac3a7e17fa5d17b9
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-12-05 22:50:41

Version Info:

0: [No Data]

Trojan.Generic.35615579 also known as:

BkavW32.AIDetectMalware
LionicAdware.Win32.Nieguide.2!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Generic.35615579
FireEyeTrojan.Generic.35615579
SkyhighBehavesLike.Win32.BadFile.wc
ALYacTrojan.Generic.35615579
Cylanceunsafe
ZillyaAdware.Agent.Win32.186937
SangforAdware.Win32.Niguide.V3eh
AlibabaAdWare:Win32/Nieguide.8a15f0fb
VirITPUP.Win32.Generic.G
SymantecPUA.Gen.2
ESET-NOD32a variant of Win32/Adware.Nieguide.AF
TrendMicro-HouseCallTROJ_GEN.R002H0CD124
ClamAVWin.Dropper.LokiBot-9869685-0
Kasperskynot-a-virus:UDS:AdWare.NSIS.Agent.jv
BitDefenderTrojan.Generic.35615579
NANO-AntivirusRiskware.Win32.Nieguide.eftrdf
TencentNsis.AdWare.Agent.Osmw
EmsisoftTrojan.Generic.35615579 (B)
DrWebTrojan.Adkor.720
VIPRETrojan.Generic.35615579
SophosGeneric Reputation PUA (PUA)
MAXmalware (ai score=81)
GoogleDetected
VaristW32/Adware.UIWU-4880
Antiy-AVLGrayWare[AdWare]/NSIS.Agent
MicrosoftPUADlManager:Win32/Niguide
ArcabitTrojan.Generic.D21F735B
ZoneAlarmnot-a-virus:UDS:AdWare.NSIS.Agent.jv
GDataTrojan.Generic.35615579
CynetMalicious (score: 100)
McAfeeArtemis!0BCFE6767713
VBA32BScope.Adware.NSIS.Agent
MalwarebytesMalware.AI.1754011260
RisingAdware.Niguide!8.13936 (CLOUD)
YandexTrojan.GenAsa!FDXsMu50vuU
IkarusPUA.Nieguide
MaxSecureTrojan.Malware.22142244.susgen
FortinetAdware/Agent
DeepInstinctMALICIOUS

How to remove Trojan.Generic.35615579?

Trojan.Generic.35615579 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment