Trojan

Trojan.Genome.ab removal

Malware Removal

The Trojan.Genome.ab is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Genome.ab virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Trojan.Genome.ab?


File Info:

name: 1C0A327F8B7BCFB3FDA4.mlw
path: /opt/CAPEv2/storage/binaries/16805ee6d900eb2c83c0e2295f5979d38a13d1247d4cd9de2b1689fd07140b0f
crc32: 31F0CF61
md5: 1c0a327f8b7bcfb3fda43d02811abd39
sha1: f7b803dffb37c03061e8dd7be5684300e1a6a404
sha256: 16805ee6d900eb2c83c0e2295f5979d38a13d1247d4cd9de2b1689fd07140b0f
sha512: 91edf2ecfe29ee0e73ed7f9f6e9aadf5d3c5de66f9101efd96eef7f024ad0fa40861581841f060dde059140acec82595506ed64e5a4b9d806258a6dd67e26973
ssdeep: 1536:VK2dMDWhFYf7kvOFKDvnEpPsu87tbO1/aNgg:g+FQIYky0eCNgg
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1725302D50C5A637EE4CD63B39857F828C7CABCA27E50D8861B30E597641C926F869381
sha3_384: 17d89e29dee950cb249034cea83c7c37bfc1c66ee0191cb574238d728bef93a9289b35b412927575f958c28ace5d0b77
ep_bytes: 60be15a046008dbeeb6ff9ff5783cdff
timestamp: 2008-04-26 07:10:10

Version Info:

0: [No Data]

Trojan.Genome.ab also known as:

LionicTrojan.Win32.Generic.4!c
McAfeeArtemis!1C0A327F8B7B
CylanceUnsafe
SangforSuspicious.Win32.Attribute.HighConfidence
SymantecML.Attribute.HighConfidence
APEXMalicious
NANO-AntivirusTrojan.Win32.SpyBot.ezomoa
AvastWin32:Malware-gen
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericRXEK-JJ!F396E32F84FB
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.czhhy
MicrosoftPWS:Win32/Zbot!ml
ViRobotTrojan.Win32.Z.Virlock.62976
VBA32Trojan.Genome.ab
TrendMicro-HouseCallTROJ_GEN.R002H06KH21
YandexTrojan.GenAsa!118Fg5eMY0U
IkarusVirus.Win32.KdCrypt
MaxSecureTrojan.Malware.300983.susgen
WebrootW32.Vundo.Gen
AVGWin32:Malware-gen
Cybereasonmalicious.ffb37c

How to remove Trojan.Genome.ab?

Trojan.Genome.ab removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment