Trojan

Trojan.GenericFC.S17873459 removal

Malware Removal

The Trojan.GenericFC.S17873459 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.GenericFC.S17873459 virus can do?

  • Detected script timer window indicative of sleep style evasion
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • Network activity detected but not expressed in API logs
  • Attempts to interact with an Alternate Data Stream (ADS)
  • Uses suspicious command line tools or Windows utilities

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.GenericFC.S17873459?


File Info:

crc32: 6264745C
md5: 40d708dea6bfc8a3b0796d34cdf502f3
name: 40D708DEA6BFC8A3B0796D34CDF502F3.mlw
sha1: 7278b4cbf11e3c039cecea48842af12a9d3bff35
sha256: 19d4b79142365e735a2097ebb317034fa9aac16b588710545e62e0646d9e9901
sha512: 9588d0515ab87b1b0ac072a4ff4e9c0e5dfdf989fab986840687923d0475c3a0db9e3e2d8f1242fe9a5d8c1fe4912d4d4e81caf7cc66034c159ed86caf4c264f
ssdeep: 6144:BvkvlUJFt3z4VmX7P1B+VIfY6ZMhXRgsbILtBndjXcub3kHBCFOszNQ9qd3ywXWH:po4JzBT1hY6ZyXOndjs5sB3ytHWPNqnX
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Trojan.GenericFC.S17873459 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Uztuby.17
CAT-QuickHealTrojan.GenericFC.S17873459
ALYacTrojan.GenericKDZ.73112
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0056839f1 )
BitDefenderTrojan.Uztuby.17
K7GWTrojan ( 0056839f1 )
Cybereasonmalicious.ea6bfc
CyrenW32/MSIL_Troj.AGC.gen!Eldorado
SymantecTrojan.Gen.MBT
APEXMalicious
AvastWin32:RATX-gen [Trj]
ClamAVWin.Malware.Rasftuby-9219744-0
KasperskyHEUR:Trojan.Win32.Hesv.gen
RisingSpyware.Agent!8.C6 (TFE:dGZlOg1b0xCtq0QT9Q)
Ad-AwareTrojan.Uztuby.17
EmsisoftTrojan.Uztuby.17 (B)
F-SecureHeuristic.HEUR/AGEN.1139433
DrWebBackDoor.SpyBotNET.28
McAfee-GW-EditionBehavesLike.Win32.Backdoor.hh
FireEyeGeneric.mg.40d708dea6bfc8a3
SophosMal/Generic-S
IkarusTrojan-Spy.DCRat
AviraHEUR/AGEN.1139433
MAXmalware (ai score=83)
Antiy-AVLTrojan/Win32.Wacatac
MicrosoftTrojan:Script/Phonzy.A!ml
GridinsoftTrojan.Win32.Agent.sd!ni
ArcabitTrojan.Generic.D11D98
ZoneAlarmHEUR:Trojan.Win32.Hesv.gen
GDataTrojan.GenericKDZ.73112 (2x)
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R341063
McAfeeArtemis!40D708DEA6BF
MalwarebytesGeneric.Worm.Autorun.DDS
PandaTrj/Genetic.gen
ESET-NOD32a variant of MSIL/Spy.Agent.AES
SentinelOneStatic AI – Malicious SFX
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.ADBF!tr
BitDefenderThetaGen:NN.ZemsilF.34590.zq0@aypBoqpi
AVGWin32:RATX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Trojan.GenericFC.S17873459?

Trojan.GenericFC.S17873459 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment