Trojan

Trojan.Generic.TRFH301 malicious file

Malware Removal

The Trojan.Generic.TRFH301 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.TRFH301 virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • CAPE detected the RDPWrap malware family

How to determine Trojan.Generic.TRFH301?


File Info:

name: 7A9ED27EE33D01F773B8.mlw
path: /opt/CAPEv2/storage/binaries/17f69dbfdbc14f00fb3ca6f8be1db23e36d71e40649162b5b1e99c1951511622
crc32: 039EEDD0
md5: 7a9ed27ee33d01f773b893db0c45faca
sha1: 4d1d5d2c88c755c27fa072b8e6dc95172756861d
sha256: 17f69dbfdbc14f00fb3ca6f8be1db23e36d71e40649162b5b1e99c1951511622
sha512: 11c98171821da8728be20cb676a20490334a413c43320d779c35be6be1e90e6060556fb4cdc000be0f37cb5aaef45433339c8622d2161080895246a0bad00a2e
ssdeep: 24576:YACpkKb3NS0WIKMOAiEmYpVAXdQz4welEccrsUZ:7CpkKb3NS0WIKMOAiEmYpEdQz4welENr
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12C352914F7E855A5F06E7F36747198050B38FE03A97DD74B2B9690990A6A380CCB2F63
sha3_384: 8e2cfe56b114dd5a6cf9616ae7517a9c836dcdf674972783f24cdfaa06413038394356c4fa2c3a0f515f2c79220f808d
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-03-07 13:01:55

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: VenomBin
FileVersion: 2.7.0.0
InternalName: Venombin.exe
LegalCopyright: Copyright © 2021
LegalTrademarks:
OriginalFilename: Venombin.exe
ProductName: VenomBin
ProductVersion: 2.7.0.0
Assembly Version: 2.7.0.0

Trojan.Generic.TRFH301 also known as:

LionicTrojan.Win32.Emotet.L!c
Elasticmalicious (high confidence)
MicroWorld-eScanIL:Trojan.MSILMamut.123
FireEyeGeneric.mg.7a9ed27ee33d01f7
CAT-QuickHealTrojan.Generic.TRFH301
McAfeeGenericRXOE-JA!7A9ED27EE33D
MalwarebytesGeneric.Malware.AI.DDS
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0051816c1 )
AlibabaTrojan:MSIL/ClipBanker.7f3ed353
K7GWTrojan ( 0051816c1 )
CrowdStrikewin/malicious_confidence_100% (W)
VirITTrojan.Win32.MSIL_Heur.B
CyrenW32/Trojan.GPU.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Agent.AIA
APEXMalicious
ClamAVWin.Malware.Ursu-9802322-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderIL:Trojan.MSILMamut.123
SUPERAntiSpywareTrojan.Agent/Gen-MSILHeracles
AvastWin32:RATX-gen [Trj]
TencentExpt.Msil.Uac.pa
SophosMal/Monev-A
F-SecureTrojan.TR/Dropper.MSIL.Gen
DrWebBackDoor.VoidRATNET.1
VIPREIL:Trojan.MSILMamut.123
TrendMicroTROJ_GEN.R002C0DHP23
McAfee-GW-EditionBehavesLike.Win32.Generic.th
EmsisoftTrojan.Agent (A)
SentinelOneStatic AI – Malicious PE
GDataIL:Trojan.MSILMamut.123
JiangminTrojan.Generic.guvhw
GoogleDetected
AviraTR/Dropper.MSIL.Gen
Antiy-AVLTrojan[Exploit]/MSIL.UAC
ArcabitIL:Trojan.MSILMamut.123
ViRobotTrojan.Win.Z.Agent.1085952.BH
ZoneAlarmHEUR:Exploit.MSIL.UAC.gen
MicrosoftTrojan:MSIL/ClipBanker.GC!MTB
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.C4455467
BitDefenderThetaGen:NN.ZemsilF.36350.cn0@aaNAxYc
ALYacIL:Trojan.MSILMamut.123
MAXmalware (ai score=89)
VBA32Trojan.MSIL.DLAgent10.Heur
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002C0DHP23
RisingExploit.UACBypass!1.C6DD (CLASSIC)
IkarusTrojan.UACBypass
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Emotet.5C62!tr
AVGWin32:RATX-gen [Trj]
Cybereasonmalicious.ee33d0
DeepInstinctMALICIOUS

How to remove Trojan.Generic.TRFH301?

Trojan.Generic.TRFH301 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment