Trojan

About “Trojan.Generic.4999968” infection

Malware Removal

The Trojan.Generic.4999968 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.4999968 virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • Unconventionial binary language: Russian
  • Unconventionial language used in binary resources: Russian
  • Authenticode signature is invalid

How to determine Trojan.Generic.4999968?


File Info:

name: F4D1F76C612D59C69CA8.mlw
path: /opt/CAPEv2/storage/binaries/2bae084a81af5c96c700831859cf24176b7409a62f67035121d78fc5975e2915
crc32: B467DEA1
md5: f4d1f76c612d59c69ca8821e7ddc849d
sha1: e4d43720f31b96cac74e43fa7a5a6bc5a15e85cc
sha256: 2bae084a81af5c96c700831859cf24176b7409a62f67035121d78fc5975e2915
sha512: 0344d18a86fa2c51285f6cc860949d754ecd766fc96b02c862ae64e4b6c3b9ef8840a6f0cc2be2e6022fd70b95db18d23f2b869ab81444a715e514789f069e03
ssdeep: 3072:+4247W/z0g0b5gz+MJCekXeQLDuXFQ8IR+uj4+MlDfksx0l56PNDemxQWZBnLq:f24Cb+jMzkXbLDoQwuj4dDf+/+Zz
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18A3419C53E912EA3E85CA033C27B8E38DF78E165F617A2476AD4F4C71B132D09A52716
sha3_384: 19870a3f8108d4d52a44b9fa778f2d37837c0eef2448bea24356f22e647a86f0751f834a9f80eccf4af4ecb3328fdcc8
ep_bytes: 558bec6aff6890e1400068988c400064
timestamp: 1998-07-21 12:44:01

Version Info:

Comments: E-mail: zagai@hotmail.com; WWW: http://seryi.da.ru
CompanyName: Sergey Zagaichuk
FileDescription: Морской бой для Win95
FileVersion: 1, 1, 0, 0
InternalName: SeaWar
LegalCopyright: Copyright © 1998
OriginalFilename: SeaWar.exe
ProductName: Seryi's SeaWar Freeware
ProductVersion: 1, 1, 0, 0
Translation: 0x0419 0x04b0

Trojan.Generic.4999968 also known as:

LionicVirus.Win9x.CIH.kZ8W
MicroWorld-eScanTrojan.Generic.4999968
FireEyeGeneric.mg.f4d1f76c612d59c6
ALYacTrojan.Generic.4999968
SangforTrojan.Win32.Wacatac.B
AlibabaTrojan:Win32/fragment.fb22b1c9
CyrenW32/Risk.EXKK-6767
SymantecTrojan.Gen.2
AvastWin32:CIH-G@dam
ClamAVWin.Trojan.Agent-406390
BitDefenderTrojan.Generic.4999968
TencentWin32.Trojan.A.Eeqr
Ad-AwareTrojan.Generic.4999968
ComodoMalware@#2yq22scf6clv8
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericR-KCS!F4D1F76C612D
EmsisoftTrojan.Generic.4999968 (B)
Paloaltogeneric.ml
WebrootW32.Malware.Gen
Antiy-AVLTrojan/Generic.ASMalwS.78D54B
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftTrojan:Script/Phonzy.A!ml
ViRobotTrojan.Win32.Z.Cih.240640
GDataTrojan.Generic.4999968
McAfeeGenericR-KCS!F4D1F76C612D
MAXmalware (ai score=99)
APEXMalicious
RisingVirus.CIH_Body!1.9B6A (CLASSIC)
YandexTrojan.Agent!B0U/ZEoaGro
AVGWin32:CIH-G@dam
Cybereasonmalicious.c612d5

How to remove Trojan.Generic.4999968?

Trojan.Generic.4999968 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment