Trojan

What is “Trojan.Generic.7955728”?

Malware Removal

The Trojan.Generic.7955728 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.7955728 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Network activity detected but not expressed in API logs

Related domains:

wpad.local-net

How to determine Trojan.Generic.7955728?


File Info:

name: 27150F6ED4251399FBA6.mlw
path: /opt/CAPEv2/storage/binaries/587cab34cd55e093bccee27e8129dd1a89516bab6b156aef1b3b34ca2f72ec73
crc32: 8C5D203F
md5: 27150f6ed4251399fba628141e3076b4
sha1: 03ed713fa0b534897df3fda2332b3b2acaafb7d6
sha256: 587cab34cd55e093bccee27e8129dd1a89516bab6b156aef1b3b34ca2f72ec73
sha512: 08cf85183ec64e8a1041cc700307f20a14d0dd937a8ec3c0633863da47920ed3716f45ad507299f8c2ea62a61ed4a5a8bc8dacc0fd2823118194a877e18844a0
ssdeep: 768:W86UJJQW3b0do6D8qm8NebqPYH7u4GIQ:tDJJQWCo6oqrAH7dGI
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T13EE2693472D7D670FC25097973C6DAC5A60A8025B56806DB7F8C27EF3F9A3208A8E175
sha3_384: 8282dd7de02e5ba5398d66279780739c4f39389184b8eb206fff240dee15058df8632d7312f4002c13f82529e809613d
ep_bytes: b85cee40005064ff3500000000648925
timestamp: 2005-12-05 20:18:56

Version Info:

0: [No Data]

Trojan.Generic.7955728 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Multi.Generic.4!c
MicroWorld-eScanTrojan.Generic.7955728
FireEyeGeneric.mg.27150f6ed4251399
CAT-QuickHealTrojan.Mauvaise.S1717647
McAfeeArtemis!27150F6ED425
CylanceUnsafe
SangforRiskware.Win32.Agent.ky
K7AntiVirusUnwanted-Program ( 004d38111 )
K7GWUnwanted-Program ( 004d38111 )
Cybereasonmalicious.ed4251
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Keygen.QN potentially unsafe
TrendMicro-HouseCallTROJ_GEN.R002H0CGU21
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderTrojan.Generic.7955728
NANO-AntivirusTrojan.Win32.KeyGenM.dhatxs
SUPERAntiSpywareTrojan.Agent/Gen-Banker
AvastWin32:Malware-gen
Ad-AwareTrojan.Generic.7955728
TACHYONTrojan/W32.Agent.32768.BFF
SophosKeygen (PUA)
ComodoMalware@#16p5c4kw48zgc
VIPRETrojan-Dropper.Gen
McAfee-GW-EditionBehavesLike.Win32.Generic.nc
EmsisoftTrojan.Generic.7955728 (B)
IkarusTrojan-Downloader.Win32.Adload.db
GDataTrojan.Generic.7955728
JiangminTrojan/Banker.Banbra.mmd
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Generic.ASMalwS.881193
KingsoftWin32.Troj.Generic.(kcloud)
MicrosoftTrojan:Win32/Tiggre!rfn
CynetMalicious (score: 100)
VBA32Trojan.Wacatac
ALYacTrojan.Generic.7955728
MAXmalware (ai score=81)
MalwarebytesMalware.AI.2204866477
APEXMalicious
YandexPUP.Agent!tE9ayDsptHM
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
WebrootW32.Trojan.dx!toq
AVGWin32:Malware-gen
PandaTrj/CI.A

How to remove Trojan.Generic.7955728?

Trojan.Generic.7955728 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment