Trojan

Trojan.Generic.4694813 information

Malware Removal

The Trojan.Generic.4694813 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.4694813 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.Generic.4694813?


File Info:

name: 0FF82D0BB4FF3496C167.mlw
path: /opt/CAPEv2/storage/binaries/7a49d63690154be52f0dbee840850bbaaa1ddd7fb124c3312cfe03cb44c027f4
crc32: 95E3BBAD
md5: 0ff82d0bb4ff3496c1675bfebc4c1de9
sha1: 6a47273021e33275d51bc971adba039307ef642d
sha256: 7a49d63690154be52f0dbee840850bbaaa1ddd7fb124c3312cfe03cb44c027f4
sha512: a6ba3af36cc1e359e3fbdec7388a67c3137271357652d8f2d0885614580c1bf300de55c8dd63b2565960950e49bf058b308acee6c90a06baee493b765cea9690
ssdeep: 98304:1YqdwkLcHH25wXbS9KvpU2NxxttXGjMUaGEPG7L/d4oGt5:1jA2mLS9Wl+1Yv
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CF36CF12B3805437C0670B75486BD7746936BE602A698A4B7FF84D1F3F793816E3A386
sha3_384: f84a39049f3912c9924d7f9127f55a88029f1d1664952f0edf6b733946e2727b9689a4aa9e719df2ebc8d97dcfae1df6
ep_bytes: e80600000050e8bb010000558bec81c4
timestamp: 1972-12-25 05:33:23

Version Info:

FileVersion: 1.0.0.0
FileDescription: AVA全功能辅助V3.5
ProductName: AVA全功能辅助V3.5
ProductVersion: 1.0.0.0
CompanyName: AVA全功能辅助V3.5
LegalCopyright: AVA全功能辅助V3.5
Comments: AVA全功能辅助V3.5
Translation: 0x0804 0x04b0

Trojan.Generic.4694813 also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
FireEyeGeneric.mg.0ff82d0bb4ff3496
ALYacTrojan.Generic.4694813
Cylanceunsafe
VIPRETrojan.Generic.32242844
K7AntiVirusTrojan ( 005194cc1 )
K7GWTrojan ( 005194cc1 )
Cybereasonmalicious.021e33
VirITTrojan.Win32.Click2.DFZZ
CyrenW32/Trojan.GMK.gen!Eldorado
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Packed.FlyStudio potentially unwanted
APEXMalicious
CynetMalicious (score: 100)
F-SecureTrojan.TR/Vapsup.ywx
DrWebTrojan.Popuper.40492
Trapminemalicious.high.ml.score
SophosGeneric ML PUA (PUA)
Webroot
AviraTR/Vapsup.ywx
XcitiumTrojWare.Win32.FlyStudio.~UJ@1sa9s6
GDataWin32.Riskware.FlyStudio.C
MalwarebytesGeneric.Malware.AI.DDS
SentinelOneStatic AI – Malicious PE
MaxSecureVirus.W32.Flystudio.Y
FortinetW32/FlyStudio.C!tr
DeepInstinctMALICIOUS

How to remove Trojan.Generic.4694813?

Trojan.Generic.4694813 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment