Trojan

Trojan.Generic.IS.577940 removal instruction

Malware Removal

The Trojan.Generic.IS.577940 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.IS.577940 virus can do?

  • Creates RWX memory
  • Anomalous file deletion behavior detected (10+)
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine Trojan.Generic.IS.577940?


File Info:

name: 6ABB9E5AD699EC19C63D.mlw
path: /opt/CAPEv2/storage/binaries/d2a66846ee746d41d8b2d1c367f0b42d2d3b3dc7d30316f7318f7761a0ff6a3d
crc32: 80F6AC60
md5: 6abb9e5ad699ec19c63d1f9841cd6001
sha1: 8b97cb478191eea6679d4820e64667896e7f4865
sha256: d2a66846ee746d41d8b2d1c367f0b42d2d3b3dc7d30316f7318f7761a0ff6a3d
sha512: 967aa9e2f2e53f32733a463d6e62fc76ec18ad885c4c529c3a4452d2612d92b40ac5d747e53b3bc733f24629ba57e7a4bbb302cc3e7ee0dd2cf56c00a4be3939
ssdeep: 1536:Weih3BynYzZqViemNLtIIqs2UaSw6RZBJWr3J:+LsVRmptxq3aw6RZK
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F4536D167460D8B2E51B02B086ADCBE5B5706D21132F850B73E23DE7FD952D2EBA920D
sha3_384: 8a20c8c82a3a4c5c6ecf4c59ad7189a77805a76f2b45d718155e4bb34aa9183676ba36f44c86603d6f47f7a7bc42eef3
ep_bytes: 5589e557565381ec7c010000e8d84900
timestamp: 2008-09-05 06:59:41

Version Info:

0: [No Data]

Trojan.Generic.IS.577940 also known as:

LionicTrojan.Multi.Generic.4!c
MicroWorld-eScanTrojan.Generic.IS.577940
FireEyeTrojan.Generic.IS.577940
ALYacTrojan.Generic.IS.577940
CylanceUnsafe
VIPRETrojan.Win32.Generic.pak!cobra
K7AntiVirusP2PWorm ( 004ca1171 )
AlibabaTrojan:Win32/Generic.ee778aa3
K7GWP2PWorm ( 004ca1171 )
Cybereasonmalicious.ad699e
CyrenW32/Alureon.CH.gen!Eldorado
SymantecTrojan.Gen.MBT
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.FakeAV-2922
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderTrojan.Generic.IS.577940
SUPERAntiSpywareTrojan.Agent/Gen-Alureon
AvastWin32:Malware-gen
Ad-AwareTrojan.Generic.IS.577940
SophosMal/Generic-R + Mal/Generic-L
ComodoTrojWare.Win32.TrojanDropper.NSIS.~d001@1oxoxy
TrendMicroTROJ_GEN.R002C0OIG21
McAfee-GW-EditionBehavesLike.Win32.BadFile.km
EmsisoftTrojan.Generic.IS.577940 (B)
GDataTrojan.Generic.IS.577940
Antiy-AVLTrojan/Generic.ASMalwNS.400B
KingsoftWin32.Troj.Generic.IS.(kcloud)
ArcabitTrojan.Generic.IS.D8D194
MicrosoftTrojan:Win32/Occamy.CD2
McAfeeArtemis!6ABB9E5AD699
MAXmalware (ai score=100)
VBA32Trojan.Occamy
TrendMicro-HouseCallTROJ_GEN.R002C0OIG21
TencentWin32.Trojan.Horse.Wrqx
MaxSecureTrojan.Malware.1728101.susgen
AVGWin32:Malware-gen
PandaTrj/CI.A

How to remove Trojan.Generic.IS.577940?

Trojan.Generic.IS.577940 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment