Trojan

Trojan.GuLoader.Generic malicious file

Malware Removal

The Trojan.GuLoader.Generic is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.GuLoader.Generic virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • At least one process apparently crashed during execution
  • Sample contains Overlay data
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality

How to determine Trojan.GuLoader.Generic?


File Info:

name: EC16E4DADCB013BA100B.mlw
path: /opt/CAPEv2/storage/binaries/651da9b2048d813522e086ad1eeb49f61a3cdc9c994a591e9c8417c799fd8e1b
crc32: 46BED269
md5: ec16e4dadcb013ba100bc74b0e2adb18
sha1: 59769bce679da41d588866e67ef1f767239aae28
sha256: 651da9b2048d813522e086ad1eeb49f61a3cdc9c994a591e9c8417c799fd8e1b
sha512: 61e830d399da15ec5748dc7d527fbbdd50e262d7758213e60cdfb495126994df35910f0925b541acb0f6a3144d6aae59e8a7e75e69225c8d8b662d36a5354af1
ssdeep: 3072:wfY/TU9fE9PEtuqOj6+Gp5WDSuDB4gbufey8XQdVTWyJRT:GYa6zlmkDZ4rI4T7RT
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FFF3AF2D3665C0E7F88943752B3A9B0B29DE78031152051B37B1BBB95F39293D90F6C9
sha3_384: edd9a3ec3c8fd61b5b4f8a2319bd8bbc7025442a5e49477ca403e895cff4c3b1933f1ebe21e9c06710a5577880fd60f8
ep_bytes: 558bec81ecf40300005356576a205f33
timestamp: 2021-09-25 21:56:47

Version Info:

0: [No Data]

Trojan.GuLoader.Generic also known as:

Elasticmalicious (moderate confidence)
MicroWorld-eScanTrojan.GenericKD.61216825
FireEyeTrojan.GenericKD.61216825
CyrenW32/Agent.ZIKF-5216
Paloaltogeneric.ml
BitDefenderTrojan.GenericKD.61216825
Ad-AwareTrojan.GenericKD.61216825
EmsisoftTrojan.GenericKD.61216825 (B)
McAfee-GW-EditionBehavesLike.Win32.Dropper.cc
IkarusWin32.SuspectCrc
GDataTrojan.GenericKD.61216825
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
MalwarebytesTrojan.GuLoader.Generic
MAXmalware (ai score=85)
PandaTrj/RnkBend.A

How to remove Trojan.GuLoader.Generic?

Trojan.GuLoader.Generic removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment