Trojan

How to remove “Trojan.Generic.4587849 (B)”?

Malware Removal

The Trojan.Generic.4587849 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.4587849 (B) virus can do?

  • Executed a command line with /C or /R argument to terminate command shell on completion which can be used to hide execution
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality

How to determine Trojan.Generic.4587849 (B)?


File Info:

name: C381444ACAEE085CC2E2.mlw
path: /opt/CAPEv2/storage/binaries/5d99ffdaf6857e1711948715a65f489a0c9c1f7cf96135fe25cc00a35def5495
crc32: F143BDDD
md5: c381444acaee085cc2e2cc0aa764c4af
sha1: 1b238313c1d53db442d8a1252454ad53db3d999a
sha256: 5d99ffdaf6857e1711948715a65f489a0c9c1f7cf96135fe25cc00a35def5495
sha512: 38fa604c2400e9441391a0e80fef4efefcccf2169f61a021a27c0495f9efeb3fa540c87baec87a797636989c7a644d16b7eadeeac1e12107ca3268f031b61ca6
ssdeep: 3072:dwxVMhOC/dTDbq91+mno3t4QZQ34t8iJkGwxVMhOC/dTDbq91+mno3t4QZQ34t8u:dTfFDbRnOT4t5JfTfFDbRnOT4t5JN
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CE149D11B682C0F3D440053058EE57B7E07CFB3977A1729BFB5A5E6A2CB4182B5069AB
sha3_384: 8359d2d00e743efc6c393121ba749f4aee3d2cc6072add3a7b2d43b7cdea58bbf48e5b985a37c22d3e58580ae0dcb0b1
ep_bytes: e86f2b000050e8733601000000000090
timestamp: 2008-08-29 04:54:38

Version Info:

0: [No Data]

Trojan.Generic.4587849 (B) also known as:

MicroWorld-eScanTrojan.Generic.4587849
ALYacTrojan.Generic.4587849
CylanceUnsafe
Cybereasonmalicious.acaee0
APEXMalicious
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderTrojan.Generic.4587849
AvastWin32:Trojan-gen
Ad-AwareTrojan.Generic.4587849
SophosGeneric ML PUA (PUA)
DrWebTrojan.MulDrop5.40344
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.BadFile.dh
FireEyeGeneric.mg.c381444acaee085c
EmsisoftTrojan.Generic.4587849 (B)
IkarusTrojan.VBS.Agent
GDataTrojan.Generic.4587849 (2x)
KingsoftWin32.Troj.Delf.a.(kcloud)
ArcabitTrojan.Generic.D460149
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
McAfeeArtemis!DD776DE0AF78
MAXmalware (ai score=85)
VBA32Trojan.MulDrop
TencentWin32.Trojan.Spnr.Sxnt
AVGWin32:Trojan-gen
PandaTrj/CI.A
MaxSecureTrojan.Malware.300983.susgen

How to remove Trojan.Generic.4587849 (B)?

Trojan.Generic.4587849 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment