Trojan

Trojan.Mauvaise.S1033487 malicious file

Malware Removal

The Trojan.Mauvaise.S1033487 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Mauvaise.S1033487 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Trojan.Mauvaise.S1033487?


File Info:

name: 0551EA78036870E70CFE.mlw
path: /opt/CAPEv2/storage/binaries/0c52a73150b73cbb5b0330f6784860eabeecb4ddf16eae0ce5776fa637557e3c
crc32: 354CD077
md5: 0551ea78036870e70cfe598ab947e95f
sha1: 5bef882bfceef4c691e7423d3c7129c0deb65b48
sha256: 0c52a73150b73cbb5b0330f6784860eabeecb4ddf16eae0ce5776fa637557e3c
sha512: 177400f2d93d87b4c2441cc01f6afc2d01881754d95fcb25ab7284f3563218083a1ed77a0124cdf25c5794a96ee40f7153f67af7c4f75076d127227b44e7b4c6
ssdeep: 12288:0F8Nqy1LWPaO9d4PnmRNnshavy6XE+lORz+HbdFin4nRjf7n2lT9:m8X1saO34PnINns0tgufinGfi
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1DBC42321C87BD0E5EF5436F21160CD112567AC118C0A1287775CBFFFBF78B521A6AAA8
sha3_384: 918049a8a1ffbae31e64dc4feec7eb6c7d1c65f1a7a8b2b3e6e7dc5e1c5c364b87fb34cdc70087da06f9de894eafa8b8
ep_bytes: b8fc9449005064ff3500000000648925
timestamp: 2012-12-21 20:59:46

Version Info:

0: [No Data]

Trojan.Mauvaise.S1033487 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Patcher.4!c
Elasticmalicious (high confidence)
CAT-QuickHealTrojan.Mauvaise.S1033487
SkyhighBehavesLike.Win32.Generic.hc
MalwarebytesGeneric.Malware/Suspicious
ZillyaTool.Patcher.Win32.15605
SangforHacktool.Win32.Patcher.Vcve
K7AntiVirusTrojan ( 0040f3a51 )
K7GWTrojan ( 0040f3a51 )
Cybereasonmalicious.bfceef
BaiduWin32.Trojan.Generic.f
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/HackTool.Patcher.AD potentially unsafe
APEXMalicious
CynetMalicious (score: 100)
SUPERAntiSpywareTrojan.Agent/Gen-Dropper
F-SecureTrojan.TR/Dropper.Gen
TrendMicroTROJ_GEN.R002C0OGH23
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.0551ea78036870e7
SophosMal/Generic-R
SentinelOneStatic AI – Malicious PE
JiangminCrackTool.Patcher.c
WebrootW32.Dropper.Gen
GoogleDetected
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Win32.BTSGeneric
MicrosoftHackTool:Win32/Patcher
XcitiumMalware@#26olbpcbvirmz
AhnLab-V3Unwanted/Win.KeyGen.R549136
McAfeeArtemis!0551EA780368
MAXmalware (ai score=99)
Cylanceunsafe
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0OGH23
RisingTrojan.Win32.Generic.1808E9EF (C64:YzY0OpqxBPcwl3su)
YandexPUP.Patcher!qHoMRZ9jBX8
IkarusTrojan-Dropper
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/GamePatcher
BitDefenderThetaGen:NN.ZexaE.36744.HmWfaOSrjzn
DeepInstinctMALICIOUS
CrowdStrikewin/grayware_confidence_100% (W)

How to remove Trojan.Mauvaise.S1033487?

Trojan.Mauvaise.S1033487 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment