Trojan

What is “Trojan.Generic.35619263”?

Malware Removal

The Trojan.Generic.35619263 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.35619263 virus can do?

  • CAPE extracted potentially suspicious content
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Detects Bochs through the presence of a registry key
  • Checks the version of Bios, possibly for anti-virtualization
  • Attempted to write directly to a physical drive
  • Collects information to fingerprint the system
  • Uses suspicious command line tools or Windows utilities
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Trojan.Generic.35619263?


File Info:

name: D284B4108663BAA4CD3E.mlw
path: /opt/CAPEv2/storage/binaries/c99c6eeae256591d92f002b25e36c1c8ab5b74578180a9850ec8ea71a3cb5163
crc32: 3962633B
md5: d284b4108663baa4cd3e13dd39bb79d0
sha1: 54ab528e960346690d22a928a3b1bd5317475207
sha256: c99c6eeae256591d92f002b25e36c1c8ab5b74578180a9850ec8ea71a3cb5163
sha512: 5069d3680f9d3c32038c843619d02f3119142b0542dfe4687f37799a2176c7efac515230a091896ef86ea5dac8717de72c1f49bf82a4972169e6b63765cf0d9e
ssdeep: 24576:/mfZgb3taRDY2sR+mNWuwzh3TZaqdiXSp0c02uFG6dAk3CMJHv:/m6AxYI4P6h3TZaqdwk0c05HGiJHv
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1E875E012B55280F1D24E06B115BB3B3AAABCDA460F38CFD7B3A0FDBD5C36541953612A
sha3_384: f3af7a6f496a0dbc0e3499bf3e5958610937d410d2d57ace4d3e4b60f4072f905797df282ed217154c1eb47f79b51bcd
ep_bytes: 558bec538b5d08568b750c578b7d1085
timestamp: 2011-08-31 07:18:59

Version Info:

FileVersion: 1.0.0.0
FileDescription: 易语言程序
ProductName: 易语言程序
ProductVersion: 1.0.0.0
LegalCopyright: 作者版权所有 请尊重并使用正版
Comments: 本程序使用易语言编写(http://www.eyuyan.com)
Translation: 0x0804 0x04b0

Trojan.Generic.35619263 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.lwgJ
ElasticWindows.Generic.Threat
MicroWorld-eScanTrojan.Generic.35619263
SkyhighBehavesLike.Win32.Generic.tc
McAfeeGeneric.gn
MalwarebytesGeneric.Malware.AI.DDS
VIPRETrojan.Generic.35619263
SangforSuspicious.Win32.Save.ins
K7AntiVirusPassword-Stealer ( 000174511 )
AlibabaRiskWare:Win32/FlyStudio.6dc7c5e4
K7GWPassword-Stealer ( 000174511 )
BaiduWin32.Trojan-Dropper.Injector.c
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/FlyStudio.HackTool.A potentially unwanted
APEXMalicious
TrendMicro-HouseCallTROJ_GEN.R002C0PC424
Paloaltogeneric.ml
ClamAVWin.Trojan.Flystudio-9943951-0
Kasperskynot-a-virus:UDS:RiskTool.Win32.IMEStartup.gen
BitDefenderTrojan.Generic.35619263
AvastWin32:Evo-gen [Trj]
EmsisoftTrojan.Generic.35619263 (B)
ZillyaTool.IMEStartup.Win32.3378
TrendMicroTROJ_GEN.R002C0PC424
FireEyeGeneric.mg.d284b4108663baa4
SophosTroj/Agent-BDTR
IkarusTrojan-PSW.QQTen
GoogleDetected
VaristW32/Trojan.GRW.gen!Eldorado
Antiy-AVLRiskWare/Win32.FlyStudio.a
Kingsoftmalware.kb.a.1000
MicrosoftTrojan:Win32/Wacatac.A!ml
XcitiumTrojWare.Win32.Agent.OSCF@5rs7jr
ArcabitTrojan.Generic.D21F81BF
ZoneAlarmnot-a-virus:UDS:RiskTool.Win32.IMEStartup.gen
GDataWin32.Trojan.FlyStudio.I
CynetMalicious (score: 100)
VBA32HackTool.Sniffer.WpePro
ALYacTrojan.Generic.35619263
TACHYONTrojan/W32.Agent.1650688.DN
Cylanceunsafe
PandaTrj/Genetic.gen
RisingHacktool.IMEStartup!8.13A5B (CLOUD)
MAXmalware (ai score=84)
FortinetRiskware/QQTen
BitDefenderThetaGen:NN.ZedlaF.36804.Kv8@aOHp6opb
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
alibabacloudRiskware:Win/IMEStartup.gen

How to remove Trojan.Generic.35619263?

Trojan.Generic.35619263 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment