Trojan

Trojan.Generic.7604330 (B) removal tips

Malware Removal

The Trojan.Generic.7604330 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.7604330 (B) virus can do?

  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Turkish
  • Authenticode signature is invalid
  • Attempts to modify desktop wallpaper
  • Installs itself for autorun at Windows startup
  • Operates on local firewall’s policies and settings

How to determine Trojan.Generic.7604330 (B)?


File Info:

name: 4BB4E33073C5D7A1EB8B.mlw
path: /opt/CAPEv2/storage/binaries/f90716af1c0a9bb49a9a3b1d407ed5e78a2a6ff3cc9ab96dfe988bfef9092d2f
crc32: 8D739285
md5: 4bb4e33073c5d7a1eb8b260be13da0ad
sha1: c00bbcd2d3b3ee339d127dc1ef094891e866811e
sha256: f90716af1c0a9bb49a9a3b1d407ed5e78a2a6ff3cc9ab96dfe988bfef9092d2f
sha512: f00b1edc4d83f8bfaf91b535149c5b8f66dcfe748babc28e7eebd5534ebaf52dea5bd33035fb9b550d1a560312fb5094aee7303c1834040e7f0b58278d5894f5
ssdeep: 3072:wfQgicdlGvILcU9KQ2BBAkJaPx4Iol28ha22XX/xmWP:2icdlG5WKQ2BjGxhspY/rP
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B0349E20E341C06EE8E142FDC2E68B76B6AC5F305B1850E3D7E5399E57352EAB93054B
sha3_384: a9c9a43cedfa0c16fc840373a37b6e7e1cf25519eea2cf15bf8c8b8aaa8871ada3a53dcc526fbc12565f4a8e11bd0e54
ep_bytes: 558bec6aff68b07742006840a8400064
timestamp: 2000-05-12 08:57:05

Version Info:

Comments:
CompanyName:
FileDescription:
FileVersion: 6.0.150.3
InternalName: jusched
LegalCopyright: Copyright © 2011
LegalTrademarks:
OriginalFilename: jusched
PrivateBuild: Sun Microsystems, Inc.
ProductName: Java(TM) Platform SE 6 U15
ProductVersion: 6.0.150.3
SpecialBuild:
Translation: 0x0000 0x04b0

Trojan.Generic.7604330 (B) also known as:

BkavW32.RontokbroLE.Worm
Elasticmalicious (high confidence)
DrWebTrojan.Proxy.20270
MicroWorld-eScanTrojan.Generic.7604330
FireEyeGeneric.mg.4bb4e33073c5d7a1
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacTrojan.Generic.7604330
MalwarebytesBackdoor.IRCBot
ZillyaTrojan.Agent.Win32.153411
K7AntiVirusEmailWorm ( 002a8f0e1 )
K7GWTrojan ( 001f4ea51 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaGen:NN.ZexaF.34294.py2@aCwZ2CoG
CyrenW32/Agent.KI.gen!Eldorado
SymantecW32.Griptolo
ESET-NOD32a variant of Win32/Agent.SRG
TrendMicro-HouseCallWORM_GANELP.SMIA
ClamAVWin.Dropper.LokiBot-9866840-0
KasperskyWorm.Win32.Juched.fkf
BitDefenderTrojan.Generic.7604330
NANO-AntivirusTrojan.Win32.Juched.dfacwp
ViRobotWorm.Win32.Juched.209429
AvastWin32:Dropper-GHV [Drp]
TencentTrojan.Win32.BitCoinMiner.la
Ad-AwareTrojan.Generic.7604330
EmsisoftTrojan.Generic.7604330 (B)
ComodoWorm.Win32.Jushed.KA@4cysvx
BaiduWin32.Trojan.Agent.dc
VIPRETrojan.Win32.Autorun.BRF (v)
TrendMicroWORM_GANELP.SMIA
McAfee-GW-EditionBehavesLike.Win32.Autorun.dt
SophosML/PE-A + W32/Ganelp-A
IkarusTrojan.Win32.Webprefix
GDataWin32.Trojan.PSE.12MA8NB
JiangminTrojan/Generic.acomf
AviraTR/Spy.Agent.586689
MAXmalware (ai score=89)
Antiy-AVLTrojan/Generic.ASMalwS.11177
KingsoftHeur.SSC.2748.1216.(kcloud)
SUPERAntiSpywareTrojan.Agent/Gen-Ganel
MicrosoftWorm:Win32/Ganelp.E
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Npkon.R18258
Acronissuspicious
McAfeeW32/Autorun.worm.aacd
VBA32Trojan.Fuery
APEXMalicious
RisingTrojan.Agent!1.C135 (CLASSIC)
YandexTrojan.GenAsa!ceN4aAluftc
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Agent.SRG!tr
AVGWin32:Dropper-GHV [Drp]
PandaTrj/Genetic.gen
MaxSecureWorm.Juched.dho

How to remove Trojan.Generic.7604330 (B)?

Trojan.Generic.7604330 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment