Trojan

Trojan.Generic.4129384 removal

Malware Removal

The Trojan.Generic.4129384 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.4129384 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Creates RWX memory
  • Unconventionial language used in binary resources: Russian
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan.Generic.4129384?


File Info:

name: 6EBDD5BDC3C8A290F697.mlw
path: /opt/CAPEv2/storage/binaries/ba5907f20b751fa0848317fb1f1cd5b214375fb9d1df2f969d0ff7a4759029d9
crc32: 6242517B
md5: 6ebdd5bdc3c8a290f697a256001f58c2
sha1: 3430d30749d5b4ceca1513752bf40d330afdf730
sha256: ba5907f20b751fa0848317fb1f1cd5b214375fb9d1df2f969d0ff7a4759029d9
sha512: 3cb7226169fd333e06d8b7375bf9c19205c13e37769b69782a0da5361e7035258ba4104a41cc7829aea19caf96b222e8a906a1fca06902ea92defeb98f1973f1
ssdeep: 3072:rUDEK1rD2Bst8kww4wpnXaryhiSO3m/ouwUeAbM91YLpWFPJP:4ZraB8gwAryA73m/oVUeKBLpYP
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19AE39E5E61919727E2396E3D62D14923F4F62C3D76F64393192AFD386C305EEF220A42
sha3_384: 9383b8d339ae159bf03037b7f191b8a3b5610e14ef0e3d68edc4746675831f1f86a9452f662c5147deea714e69276fb8
ep_bytes: 558bec81c404ffffff4effb55cfeffff
timestamp: 2004-01-17 07:29:14

Version Info:

CompanyName: АцНаювеоЮЖНВццжузОЖБЭЭЛпЛФыИ
FileDescription: ЗвРбЙзВПаЩдаПфШИютВшДтГжа
FileVersion: 8.20.97.114
InternalName: ЛЧЦэМднсжЕЧкГшюадвръкФВДБхЙи
LegalCopyright: 8059-7661
OriginalFilename: ROKR3raK.exe
ProductName: кюаЮэТбыкЕЪтХоъГищГмчх
ProductVersion: 8.20.97.114
Translation: 0x04b0 0x0417

Trojan.Generic.4129384 also known as:

BkavW32.AIDetect.malware2
LionicHacktool.Win32.Krap.x!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.6ebdd5bdc3c8a290
ALYacTrojan.Generic.4129384
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.898331
SangforTrojan.Win32.Zbot.gen!R
K7AntiVirusTrojan ( 0016abcb1 )
AlibabaTrojanPSW:Win32/Kryptik.289c5553
K7GWTrojan ( 0016abcb1 )
Cybereasonmalicious.dc3c8a
BitDefenderThetaAI:Packer.89BA614F1F
VirITTrojan.Win32.Packed.BECL
CyrenW32/Qakbot.A.gen!Eldorado
SymantecW32.Qakbot!gen4
ESET-NOD32a variant of Win32/Kryptik.EIO
APEXMalicious
Paloaltogeneric.ml
KasperskyPacked.Win32.Krap.gx
BitDefenderTrojan.Generic.4129384
NANO-AntivirusTrojan.Win32.Zbot.tpkj
MicroWorld-eScanTrojan.Generic.4129384
AvastWin32:MalOb-IJ [Cryp]
TencentWin32.Packed.Krap.Wtej
Ad-AwareTrojan.Generic.4129384
SophosML/PE-A + Mal/Qbot-B
ComodoMalCrypt.Indus!@1qrzi1
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.Packed.20343
VIPRETrojan.Win32.Nedsym.f (v)
TrendMicroBKDR_QAKBOT.SMC
McAfee-GW-EditionPWS-Zbot.gen.aum
EmsisoftTrojan.Generic.4129384 (B)
IkarusTrojan-Spy.Win32.Zbot
GDataTrojan.Generic.4129384
JiangminTrojan/Agent.drdu
AviraTR/Dropper.Gen
Antiy-AVLTrojan[Packed]/Win32.Krap
ZoneAlarmPacked.Win32.Krap.gx
MicrosoftTrojan:Win32/Zbot.SIBC21!MTB
Acronissuspicious
McAfeePWS-Zbot.gen.aum
MAXmalware (ai score=100)
VBA32BScope.Trojan.Packed
MalwarebytesMalware.Heuristic.1006
TrendMicro-HouseCallBKDR_QAKBOT.SMC
RisingDropper.Obitel!8.1F55 (CLOUD)
SentinelOneStatic AI – Malicious PE
FortinetW32/Krap.B!tr
AVGWin32:MalOb-IJ [Cryp]
PandaTrj/Krapack.gen
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Trojan.Generic.4129384?

Trojan.Generic.4129384 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment