Trojan

Trojan.Generic.TRFH8 removal tips

Malware Removal

The Trojan.Generic.TRFH8 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.TRFH8 virus can do?

  • Sample contains Overlay data
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan.Generic.TRFH8?


File Info:

name: 3D58E3483F54CD83F32B.mlw
path: /opt/CAPEv2/storage/binaries/7035b3de5f91d58bb5bfdb8088cf58a152caca785c2f434e3ed6648a45d1a561
crc32: 9D724011
md5: 3d58e3483f54cd83f32bfda05d4f7827
sha1: 1b926ff141818584aa610679a004a8cfea55a815
sha256: 7035b3de5f91d58bb5bfdb8088cf58a152caca785c2f434e3ed6648a45d1a561
sha512: bdd747543d59b9b2e1cdd87757b6a49f1458c58af89c8723a303491481a25ace3a3e1863dd6e3f5c7ba402a9dab56320623fe1aa3b433615313725ede7ff3207
ssdeep: 12288:huKdfNxFV/VgM0EodfcsgagqfLzWFkYykPpqOdRZceSUGIv:5fNxemiffg9qzS2Ylo0Zcyv
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T125D423929B80E837F7A31FB002F6AA55B0470F1A7DD3FD9FCD7196A7819AA440940787
sha3_384: fc7b91497a675cc7ba04d539bae5358277758d655dbba38586689c2f994f0c8542864d50f6c8067409f437c75e734958
ep_bytes: ff250020400000000000000000000000
timestamp: 2011-07-01 22:53:51

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 1.0.0.0
InternalName: Microsoft®.exe
LegalCopyright:
OriginalFilename: Microsoft®.exe
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Trojan.Generic.TRFH8 also known as:

LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.Olock.1
ClamAVWin.Malware.Generickdz-9826672-0
FireEyeGen:Trojan.Olock.1
CAT-QuickHealTrojan.Generic.TRFH8
ALYacGen:Trojan.Olock.1
Cylanceunsafe
ZillyaTrojan.AinslotGen.Win32.1
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaWorm:Win32/Ainslot.338
K7GWTrojan ( 00516f961 )
K7AntiVirusTrojan ( 00516f961 )
VirITTrojan.Win32.X-ILCrypt.OV
CyrenW32/MSIL_Kryptik.CG.gen!Eldorado
SymantecTrojan.Gen.2
tehtrisGeneric.Malware
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Trojan.Olock.1
NANO-AntivirusTrojan.WinXX.Inject.dcgupd
AvastOther:Malware-gen [Trj]
TencentMalware.Win32.Gencirc.10b0a827
EmsisoftGen:Trojan.Olock.1 (B)
DrWebTrojan.Inject.51371
VIPREGen:Trojan.Olock.1
TrendMicroWorm.MSIL.AINSLOT.SMAL01
McAfee-GW-EditionBehavesLike.Win32.Generic.jc
SophosW32/Ainslot-AO
SentinelOneStatic AI – Malicious PE
GDataGen:Trojan.Olock.1
JiangminTrojan/Jorik.hsu
Antiy-AVLTrojan/Win32.Unknown
XcitiumTrojWare.MSIL.Ainslot.A@7yqqhk
ArcabitTrojan.Olock.1
SUPERAntiSpywareTrojan.Agent/Gen-Ainslot
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftWorm:Win32/Ainslot.A
GoogleDetected
AhnLab-V3Win-Trojan/MSILKrypt02.Exp
Acronissuspicious
McAfeeGenericRXCP-ZU!3D58E3483F54
MAXmalware (ai score=84)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/CI.A
TrendMicro-HouseCallWorm.MSIL.AINSLOT.SMAL01
RisingTrojan.Injector!1.B43C (CLASSIC)
YandexTrojan.Agent!JBdqJyJhjdI
IkarusTrojan.Inject
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Injector.XOX!tr
AVGOther:Malware-gen [Trj]
Cybereasonmalicious.141818
DeepInstinctMALICIOUS

How to remove Trojan.Generic.TRFH8?

Trojan.Generic.TRFH8 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment