Trojan

Trojan.Snojan removal instruction

Malware Removal

The Trojan.Snojan is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Snojan virus can do?

  • Loads a driver
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is likely packed with VMProtect
  • Network activity detected but not expressed in API logs

How to determine Trojan.Snojan?


File Info:

crc32: 5071541B
md5: b9fe59cbb16c77aa9d00b534d996ba57
name: B9FE59CBB16C77AA9D00B534D996BA57.mlw
sha1: fc04261ab7b014531365d19d6408f37129c8e8f1
sha256: 895dda164c117ab36f10e6db4601f070926016545f4ec921a52311a1675f223a
sha512: c1f831683fce69b03567f09a6c8b3c85a5a3a3a37401888fc6b484cff6bf2084b54895e245753358ef2ea531f6b9c738f82085d333d4f29db5bcead2d638db7d
ssdeep: 24576:Z0a0XZrISt2A4K0lOSATHFGEftmKQ7yfvoWXIt5EqvOOX9Ys:Z01rI64KmnATHbMWYpWOus
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Snojan also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005246d51 )
LionicTrojan.Win32.Generic.lQvU
Elasticmalicious (high confidence)
ALYacGen:Trojan.Heur.JzW@r9vJUfbby
MalwarebytesTrojan.MalPack.FlyStudio
ZillyaTrojan.ATRAPS.Win32.363
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/ATRAPS.fc7944a6
K7GWAdware ( 004b87ea1 )
Cybereasonmalicious.bb16c7
CyrenW32/Agent.EW.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Trojan.Heur.JzW@r9vJUfbby
NANO-AntivirusTrojan.Win32.Snojan.factpc
MicroWorld-eScanGen:Trojan.Heur.JzW@r9vJUfbby
TencentMalware.Win32.Gencirc.10b0d07d
Ad-AwareGen:Trojan.Heur.JzW@r9vJUfbby
SophosMal/Generic-S
ComodoWorm.Win32.Dropper.RA@1qraug
BitDefenderThetaAI:Packer.8C23BEBA1D
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0PJA21
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
FireEyeGeneric.mg.b9fe59cbb16c77aa
EmsisoftGen:Trojan.Heur.JzW@r9vJUfbby (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.cbrps
AviraTR/ATRAPS.Gen2
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.25976F9
MicrosoftTrojan:Win32/Occamy.C89
GDataWin32.Trojan.PSE.19Q2126
AhnLab-V3Malware/Win32.Generic.C2462028
Acronissuspicious
McAfeeGenericRXAU-SB!B9FE59CBB16C
MAXmalware (ai score=99)
VBA32Trojan.Snojan
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0PJA21
RisingTrojan.Generic@ML.100 (RDML:vsWvPAMykaUfmFbGvLe/IQ)
YandexTrojan.GenAsa!2qr38HQKr5E
IkarusTrojan.Win32.MBRlock
MaxSecureTrojan.Malware.12295532.susgen
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.Snojan?

Trojan.Snojan removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment