Trojan

Trojan.Generic.4665808 (file analysis)

Malware Removal

The Trojan.Generic.4665808 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.4665808 virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Executable file is packed/obfuscated with ASPack
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Trojan.Generic.4665808?


File Info:

name: E2CA84B4FEFCBFF61DB9.mlw
path: /opt/CAPEv2/storage/binaries/3f8a1beb4c88bc36deb89c25bda1bd3f615e2cfecba3af1be36004cc48b4f1d9
crc32: 0196D0CB
md5: e2ca84b4fefcbff61db975fe5fdfdb6b
sha1: a18c07b0d7be949e9c159ef57d061c47a381f23c
sha256: 3f8a1beb4c88bc36deb89c25bda1bd3f615e2cfecba3af1be36004cc48b4f1d9
sha512: 96a78fd229d90516c7472d0a02d35cec71aafe602375b6cec937bb334eaa4e44c01ccf8727b1be6ae68bbb9c50446eb42b827fe120d15099cb1462e744ff3753
ssdeep: 192:9XiUokZz0ieaPXpAxHSwCMrpY7e8LqPZo5LdCfq1Rn6O3:9XiUoSzreSAxHSr6+e9Pfqbn1
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1EFB22C67DD85C8FAC4CA7E3311DA2993D6BE85714271815E13F30C9DB536027C91CA66
sha3_384: 4db2b37222a349784c3da94d112d29eba8921e8833a4e70fda89f16afea8b4025fb32bea3bd42673581baa94ca2a86ce
ep_bytes: 6a006a036a006a006a006a00689c3140
timestamp: 2029-10-13 15:59:23

Version Info:

0: [No Data]

Trojan.Generic.4665808 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Multi.Generic.4!c
MicroWorld-eScanTrojan.Generic.4665808
McAfeeArtemis!E2CA84B4FEFC
CylanceUnsafe
VIPRETrojan.Generic.4665808
SangforSuspicious.Win32.Save.ins
AlibabaTrojan:Win32/Unpacked.675fdafe
Cybereasonmalicious.4fefcb
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Generik.BYHEPYB
APEXMalicious
Paloaltogeneric.ml
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderTrojan.Generic.4665808
NANO-AntivirusTrojan.Win32.Crypted.etushb
AvastWin32:Evo-gen [Trj]
TencentWin32.Trojan.Crypt.Sgil
Ad-AwareTrojan.Generic.4665808
EmsisoftTrojan.Generic.4665808 (B)
ComodoMalware@#3k9eroohlj2dj
TrendMicroTROJ_GEN.R002C0GF622
McAfee-GW-EditionArtemis!Trojan
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.e2ca84b4fefcbff6
SophosGeneric ML PUA (PUA)
GDataTrojan.Generic.4665808
JiangminTrojan.Generic.axdsf
GoogleDetected
AviraTR/Crypt.XPACK.Gen2
Antiy-AVLTrojan/Generic.ASMalwS.3C54
KingsoftWin32.Troj.Generic.(kcloud)
ArcabitTrojan.Generic.D4731D0
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
VBA32Trojan.Ymacco
ALYacTrojan.Generic.4665808
MAXmalware (ai score=98)
TrendMicro-HouseCallTROJ_GEN.R002C0GF622
RisingTrojan.Bitrep!8.F596 (CLOUD)
IkarusTrojan.Unpacked
MaxSecureTrojan.Malware.1728101.susgen
FortinetGenerik.BYHEPYB!tr
AVGWin32:Evo-gen [Trj]
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Generic.4665808?

Trojan.Generic.4665808 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment