Trojan

About “Trojan.Generic.6980650 (B)” infection

Malware Removal

The Trojan.Generic.6980650 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.6980650 (B) virus can do?

  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan.Generic.6980650 (B)?


File Info:

name: E0C9225D8042F89A0EB2.mlw
path: /opt/CAPEv2/storage/binaries/a60da3cd0e711a18381dd780fbdaa2fb97287b48796a37f59009390add5d43ec
crc32: 43623DF5
md5: e0c9225d8042f89a0eb2ce2baecc1ea3
sha1: 2caeebf4ba3cf9d918e6eccb4638284f9c9a685f
sha256: a60da3cd0e711a18381dd780fbdaa2fb97287b48796a37f59009390add5d43ec
sha512: d4bb75b3bed324b4634bf360534908b5425c4d19e80769128b3cb52cd260677160399a98b6ce7005b1c7659dd985f17a623d1aa20fb91f9761c2bab10f0c72cd
ssdeep: 12288:BepPJHnyYuOp6NzuQALzj4oPrXXOlMqaXsYSGxDttc09voTlz2DGSXAecG:Bidyc4zuN1iy5ckLc09yHSNcG
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T104F49F31B2E14477D16316389C1B97A8A83AFF112E2D7A867BF53D4C4F3968138291E7
sha3_384: 6537cf666b73c7905eff2a48f7228d403aaa59766e4c560bd34111ca3bb43025aa54fd2452b1aec1aef81079b23928fa
ep_bytes: 558bec83c4f0b8c84a4900e86810f7ff
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Trojan.Generic.6980650 (B) also known as:

CynetMalicious (score: 99)
McAfeeArtemis!E0C9225D8042
ZillyaBackdoor.Hupigon.Win32.208866
Cybereasonmalicious.d8042f
SymantecML.Attribute.HighConfidence
APEXMalicious
BitDefenderTrojan.Generic.6980650
NANO-AntivirusTrojan.Win32.Qqshou.oskim
MicroWorld-eScanTrojan.Generic.6980650
AvastWin32:Malware-gen
Ad-AwareTrojan.Generic.6980650
EmsisoftTrojan.Generic.6980650 (B)
DrWebTrojan.PWS.Qqshou.773
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Fareit.bh
FireEyeTrojan.Generic.6980650
SophosMal/Generic-S
JiangminTrojan/PSW.QQShou.zs
WebrootW32.Malware.Gen
AviraHEUR/AGEN.1105506
Antiy-AVLTrojan/Generic.ASMalwS.6F0B9
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataTrojan.Generic.6980650
VBA32BScope.Trojan.Wacatac
ALYacTrojan.Generic.6980650
TrendMicro-HouseCallTROJ_GEN.R002H0CKN21
YandexTrojan.PWS.QQShou!LVuZhzwnuyE
eGambitGeneric.Malware
AVGWin32:Malware-gen
MaxSecureTrojan.Malware.300983.susgen

How to remove Trojan.Generic.6980650 (B)?

Trojan.Generic.6980650 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment