Categories: Trojan

What is “Trojan.Generic.5488708”?

The Trojan.Generic.5488708 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.5488708 virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan.Generic.5488708?


File Info:

name: BDCA9199FB8918A74FB5.mlwpath: /opt/CAPEv2/storage/binaries/b6ed0cb184764af512f3f1dc48bd328e79b7a5ef608be91e10f6fb2277149c00crc32: B745BEDEmd5: bdca9199fb8918a74fb5b8b6bb282c2fsha1: 652a46d3d3cc706394af38c24dcc1fa85246bc0fsha256: b6ed0cb184764af512f3f1dc48bd328e79b7a5ef608be91e10f6fb2277149c00sha512: 3d3915c2da09b6e772579301c45eb92c0147b2a267a6355e2254fd6abe9aff5d98573a45e44d8fc30e0105054949abaa928a0cd4ba1f550801399ab4caf31023ssdeep: 3072:FD8FoIkszNHHGa3zc2noi+PgXVOH8Ggp:FDXInbhoi+4type: PE32 executable (GUI) Intel 80386, for MS Windowstlsh: T106D31A22B380F73AE11586F16B2509B805AAFD3505B58457F2C17B6E77B2CD3D92132Bsha3_384: af5d606329bbfc93978c12851a90f673d40fea984aa4f7b5e8e36c858155588cae055f710bd0138ba312374e4a0cf006ep_bytes: 6898524000e8eeffffff000000000000timestamp: 2011-02-10 13:11:41

Version Info:

Translation: 0x0409 0x04b0Comments: Flavor=RetailCompanyName: Microsoft CorporationProductName: Microsoft® .NET FrameworkFileVersion: 7.09.0050ProductVersion: 7.09.0050InternalName: KernelMngOriginalFilename: KernelMng.exe

Trojan.Generic.5488708 also known as:

Lionic Trojan.Win32.Banbra.7!c
MicroWorld-eScan Trojan.Generic.5488708
ClamAV Win.Trojan.Banker-14086
McAfee Artemis!BDCA9199FB89
Zillya Trojan.Banbra.Win32.11433
Alibaba TrojanBanker:Win32/Banbra.e8d4b8e8
Cybereason malicious.9fb891
VirIT Trojan.Win32.VB.KEY
Symantec W32.Dromedan
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win32/Spy.Bancos.OHI
APEX Malicious
Kaspersky Trojan-Banker.Win32.Banbra.aeqw
BitDefender Trojan.Generic.5488708
Tencent Win32.Trojan-Banker.Banbra.Eplw
Ad-Aware Trojan.Generic.5488708
Emsisoft Trojan.Generic.5488708 (B)
Comodo Malware@#1pl95kvad381k
VIPRE Trojan.Generic.5488708
McAfee-GW-Edition BehavesLike.Win32.Trojan.cm
Trapmine malicious.moderate.ml.score
FireEye Generic.mg.bdca9199fb8918a7
SentinelOne Static AI – Malicious PE
GData Trojan.Generic.5488708
Webroot W32.Rogue.Gen
MAX malware (ai score=99)
Antiy-AVL Trojan/Generic.ASMalwS.68
Arcabit Trojan.Generic.D53C044
ViRobot Trojan.Win32.Banbra.139264.B
ZoneAlarm Trojan-Banker.Win32.Banbra.aeqw
Microsoft Trojan:Win32/Wacatac.B!ml
Google Detected
ALYac Trojan.Generic.5488708
VBA32 Trojan.VBRA.01652
Rising Trojan.Injector!1.B2FA (CLASSIC)
Yandex Trojan.GenAsa!PmCshkHFLyk
Ikarus Trojan-Banker.Win32.Banbra
MaxSecure Trojan.Malware.1729651.susgen
Fortinet W32/Banbra.AEQW!tr
CrowdStrike win/malicious_confidence_100% (D)

How to remove Trojan.Generic.5488708?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

What is “Lazy.101855”?

The Lazy.101855 is considered dangerous by lots of security experts. When this infection is active,…

2 mins ago

About “Tedy.563972” infection

The Tedy.563972 is considered dangerous by lots of security experts. When this infection is active,…

32 mins ago

Jaik.225774 (B) (file analysis)

The Jaik.225774 (B) is considered dangerous by lots of security experts. When this infection is…

42 mins ago

Zusy.494313 (file analysis)

The Zusy.494313 is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago

Fragtor.158799 (file analysis)

The Fragtor.158799 is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago

Win32/Adware.Agent.NPP removal tips

The Win32/Adware.Agent.NPP is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago