Trojan

Should I remove “Trojan.Generic.8923843”?

Malware Removal

The Trojan.Generic.8923843 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.8923843 virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Executed a very long command line or script command which may be indicative of chained commands or obfuscation
  • Uses Windows utilities for basic functionality
  • Executed a process and injected code into it, probably while unpacking
  • Sniffs keystrokes
  • Installs an hook procedure to monitor for mouse events
  • Tries to unhook or modify Windows functions monitored by Cuckoo
  • Installs itself for autorun at Windows startup
  • Operates on local firewall’s policies and settings
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

Related domains:

winupdate.servepics.com
1winupdate.servepics.com
2winupdate.servepics.com
3winupdate.servepics.com
4winupdate.servepics.com
5winupdate.servepics.com
6winupdate.servepics.com

How to determine Trojan.Generic.8923843?


File Info:

crc32: 59071B7C
md5: 94d4856649aa8e68342d5825a3fe8fc9
name: 94D4856649AA8E68342D5825A3FE8FC9.mlw
sha1: 6c883f8a28dbbd558d7564ea03f3fa1d65dd9711
sha256: dce8c01a1c111e94400cafe13dfa7a144e1ac64f71f025a49c52bb835d2a1c93
sha512: 63b911c563c7622d061d8bc98940b5c8b71361d2831375b7d84e666f92cad40e2b6f66912e296865c23ae9ae28121348e06cd2baf5784ca6fb6f429e1182d3f9
ssdeep: 24576:8RmJkcoQricOIQxiZY1iaOvGDomqEIVqKm+C62f:pJZoQrbTFZY1iaOvmkqKmEm
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

CompiledScript: AutoIt v3 Script: 3, 3, 8, 1
FileVersion: 3, 3, 8, 1
FileDescription:
Translation: 0x0809 0x04b0

Trojan.Generic.8923843 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0055e3991 )
LionicTrojan.Win32.Autoit.4!c
CynetMalicious (score: 100)
ALYacTrojan.Generic.8923843
CylanceUnsafe
ZillyaDropper.Autoit.Win32.4529
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaTrojanDropper:Win32/Injector.8f652f19
K7GWTrojan ( 0055e3991 )
Cybereasonmalicious.649aa8
BaiduWin32.Trojan.Autoit.x
SymantecTrojan.Gen.MBT
ESET-NOD32multiple detections
APEXMalicious
AvastAutoIt:Agent-HO [Trj]
KasperskyTrojan-Dropper.Win32.Autoit.bdx
BitDefenderTrojan.Generic.8923843
NANO-AntivirusTrojan.Script.Agent.debwza
MicroWorld-eScanTrojan.Generic.8923843
TencentWin32.Trojan-dropper.Autoit.Huzc
Ad-AwareTrojan.Generic.8923843
SophosMal/Generic-S
ComodoMalware@#20foq0e56c7mv
BitDefenderThetaAI:Packer.E74A889317
TrendMicroTROJ_SPNR.30BD13
McAfee-GW-EditionBehavesLike.Win32.Dropper.dc
FireEyeGeneric.mg.94d4856649aa8e68
EmsisoftTrojan.Generic.8923843 (B)
AviraHEUR/AGEN.1101410
eGambitUnsafe.AI_Score_86%
KingsoftWin32.Troj.AutoIt.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataTrojan.Generic.8923843
AhnLab-V3Trojan/Win32.Llac.R97023
McAfeeArtemis!94D4856649AA
MAXmalware (ai score=100)
VBA32Trojan.Autoit.F
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_SPNR.30BD13
YandexTrojan.Llac!iGnQXjAxH14
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Autoit.AZA
FortinetW32/Injector.AIE!tr
AVGAutoIt:Agent-HO [Trj]
Paloaltogeneric.ml

How to remove Trojan.Generic.8923843?

Trojan.Generic.8923843 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment