Trojan

Trojan.Generic.7381086 removal tips

Malware Removal

The Trojan.Generic.7381086 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.7381086 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Unconventionial language used in binary resources: Chinese (Singapore)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan.Generic.7381086?


File Info:

name: DA3E38A74293DE2CEF96.mlw
path: /opt/CAPEv2/storage/binaries/cb4a685d5b09f2cd8edbb1f4179aa8c53087454f2e4c21a1b0b115c5642b31ed
crc32: 921E58F7
md5: da3e38a74293de2cef967bc01a0401f5
sha1: 01687209773566f45df11561870dd4fda33e2747
sha256: cb4a685d5b09f2cd8edbb1f4179aa8c53087454f2e4c21a1b0b115c5642b31ed
sha512: cfa03e706a6e367f4511f0b62f06b8601c66eb422080e3603ba4a8eae6e730603580987db83a9f0d2f3b6b2d2440ae683c1b9a0365fe428d687e28e7ba6ea5f5
ssdeep: 3072:/zWumW2PGddLV/gpjHXHcetB0hAZjb0V6vOgaP7VRH7:baW1LVYlHZFZjPGnVl7
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T199F312562AD1DD29E08001F99525AA72933DB4C2A4C05E75BACCFDFB9770B47E782063
sha3_384: 0801caa60801fa1ee1c0f03f4848b7a95d9caa872b22e0cb194ff1be9c4d7add18d0ed6a8d5a811c1b66a4405d4f767c
ep_bytes: b8002747005064ff3500000000648925
timestamp: 2011-01-03 05:51:53

Version Info:

0: [No Data]

Trojan.Generic.7381086 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Agent.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.da3e38a74293de2c
McAfeeArtemis!DA3E38A74293
CylanceUnsafe
ZillyaDownloader.Agent.Win32.89879
K7AntiVirusTrojan ( 0055e3e61 )
K7GWTrojan ( 0055e3e61 )
Cybereasonmalicious.74293d
BaiduWin32.Trojan.Agent.cu
VirITTrojan.Win32.Delf.VIR
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Delf.PVL
APEXMalicious
ClamAVWin.Trojan.Agent-454383
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Generic.7381086
NANO-AntivirusTrojan.Win32.Agent.cpoad
MicroWorld-eScanTrojan.Generic.7381086
AvastWin32:Trojan-gen
TencentWin32.Trojan-Downloader.Agent.deqw
SophosMal/Generic-S
ComodoTrojWare.Win32.Downloader.Agent.gctk@4tfmua
DrWebTrojan.Siggen4.26174
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
EmsisoftTrojan.Generic.7381086 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Agent.ejvg
AviraHEUR/AGEN.1236839
MAXmalware (ai score=86)
Antiy-AVLTrojan/Generic.ASMalwS.143099
KingsoftWin32.Heur.KVM011.a.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataTrojan.Generic.7381086
BitDefenderThetaGen:NN.ZelphiF.34182.kiXfaCskZ3ob
ALYacTrojan.Generic.7381086
VBA32Trojan.Delf
RisingTrojan.Win32.fedoN.fa (CLOUD)
YandexTrojan.GenAsa!d5JNbyZ061o
IkarusTrojan.Win32.Delf
MaxSecureTrojan.Malware.2316888.susgen
FortinetW32/Agent.VIR!tr.dldr
AVGWin32:Trojan-gen
PandaGeneric Malware
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Generic.7381086?

Trojan.Generic.7381086 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment