Trojan

Trojan.Generic.3880235 (file analysis)

Malware Removal

The Trojan.Generic.3880235 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.3880235 virus can do?

  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Tries to unhook or modify Windows functions monitored by Cuckoo
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Generic.3880235?


File Info:

crc32: 8A2FFAE6
md5: 968ce48007040b4b13b5fb9aee4cfc1e
name: 968CE48007040B4B13B5FB9AEE4CFC1E.mlw
sha1: ec3bfb9e26455836466cc9ca5526a152558ed3d0
sha256: c00967d540c1b5b5c68ff3431b8bbe17eb353636aac852db6ab4352770502954
sha512: a29b97d18d5cb19d2c46b73ceb05bd9e3a7d5a2aafe650ecba73f3684e2eaedc1f89b3475f0a756c3d97442c1b2da9d2faf965e1bcdc177a688a2de68365c711
ssdeep: 3072:/ERJ+DymmE6Egi9uUeWcHlLmSu9QxEGiFDBJ7a+Ack:WJ+mVDi42+LmSu9Yjaw
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright:
InternalName:
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName:
ProductVersion: 1.0.0.0
FileDescription:
OriginalFilename:
Translation: 0x0804 0x03a8

Trojan.Generic.3880235 also known as:

McAfeeArtemis!968CE4800704
SymantecTrojan Horse
NormanW32/Suspicious_Gen.HPRL
TrendMicro-HouseCallTROJ_GEN.R4FC3J7
AvastWin32:Malware-gen
BitDefenderTrojan.Generic.3880235
ComodoUnclassifiedMalware
F-SecureTrojan.Generic.3880235
VIPRETrojan.Win32.Generic!BT
AntiVirTR/PSW.Mir.A
TrendMicroTROJ_GEN.R4FC3J7
McAfee-GW-EditionArtemis!968CE4800704
EmsisoftBackdoor.Win32.Haxdoor.GA!IK
GDataTrojan.Generic.3880235
AhnLab-V3Malware/Win32.Trojan Horse
PCToolsTrojan.Generic
RisingSuspicious
IkarusBackdoor.Win32.Haxdoor.GA
PandaTrj/CI.A

How to remove Trojan.Generic.3880235?

Trojan.Generic.3880235 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment