Trojan

Trojan.Generic.9070424 (file analysis)

Malware Removal

The Trojan.Generic.9070424 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.9070424 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine Trojan.Generic.9070424?


File Info:

name: 00D20039B04607AB4D17.mlw
path: /opt/CAPEv2/storage/binaries/c09e453bd3d1b3e35c5a63263b0581e73f5079dc6dcc27112d8fe72d9dbf8eac
crc32: C0567A63
md5: 00d20039b04607ab4d1741e80c3e7a4c
sha1: 9b8fed59d6f81c10517116694893f650f3b02c3e
sha256: c09e453bd3d1b3e35c5a63263b0581e73f5079dc6dcc27112d8fe72d9dbf8eac
sha512: 57c2db4a20f6aae4efbfbdf433aa90131f34a02ee0feebec629fde2468d17837ab16db7ff20dc623d6aad29638c5fc75fcad29b153216221db39f82149ed2153
ssdeep: 3072:fhMS+8ogvrfUgBZIhBPhmDRdhusn842Q4T/DtnUAQ1kDk6SDADeakU:fhMS+8vrBBIZgbmBeAfSsQU
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1EE048D0332D4C8B5D1B322310DA29B6963B6FD308F36DB0B67943B0F6E755D54A293A6
sha3_384: b26ffb0df5ce69612db9bc9397ff26666ba1fb658aaa7ca3f04e7946210a01a2f448d2c3729d89a8c57c518de1f5c721
ep_bytes: 6a606888c84100e83ffaffffbf940000
timestamp: 2009-10-19 08:09:05

Version Info:

CompanyName: Sunward Information Technology Co.Ltd
FileDescription: 2009.10.19 14:30
FileVersion: 3.0.0.4
InternalName: MFCZUJIAN.exe
LegalCopyright: Sunward Information Technology Co.Ltd
OriginalFilename: MFCZUJIAN.exe
ProductName: 系统环境检测软件
ProductVersion: 3.0.0.4
Translation: 0x0804 0x03a8

Trojan.Generic.9070424 also known as:

LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
FireEyeGeneric.mg.00d20039b04607ab
McAfeeGenericR-DDS!00D20039B046
CylanceUnsafe
ZillyaTrojan.OnLineGames.Win32.179280
SangforRiskware.Win32.Agent.ky
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaTrojan:Win32/OnLineGames.60bc0216
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderTrojan.Generic.9070424
NANO-AntivirusTrojan.Win32.OnLineGames.cqpevc
MicroWorld-eScanTrojan.Generic.9070424
AvastWin32:Malware-gen
TencentMalware.Win32.Gencirc.114c6caa
Ad-AwareTrojan.Generic.9070424
EmsisoftTrojan.Generic.9070424 (B)
ComodoMalware@#12o4d9u6roxkv
DrWebTrojan.PWS.Wsgame.40556
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericR-DDS!00D20039B046
SophosMal/Generic-S
IkarusTrojan-Spy
GDataTrojan.Generic.9070424
WebrootW32.Malware.Gen
AviraHEUR/AGEN.1124024
MAXmalware (ai score=99)
Antiy-AVLTrojan/Generic.ASMalwS.1A6503
KingsoftHeur.SSC.659781.1216.(kcloud)
ArcabitTrojan.Generic.D8A6758
MicrosoftTrojan:Win32/Occamy.CC0
BitDefenderThetaGen:NN.ZexaF.34084.lq0@aqEcQYcb
ALYacTrojan.Generic.9070424
TACHYONTrojan-PWS/W32.WebGame.183808.Q
VBA32TrojanPSW.OnLineGames.a
TrendMicro-HouseCallTROJ_GEN.R002C0PHN21
RisingTrojan.Generic@ML.87 (RDMK:QlYviSOtszskEU7HgBGekw)
YandexTrojan.PWS.OnLineGames!28C06gY5fOI
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.5775135.susgen
FortinetW32/Dx.BCMR!tr
AVGWin32:Malware-gen
Cybereasonmalicious.9b0460
PandaTrj/CI.A

How to remove Trojan.Generic.9070424?

Trojan.Generic.9070424 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment