Trojan

Trojan.Win32.Snojan.ciar (file analysis)

Malware Removal

The Trojan.Win32.Snojan.ciar is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Snojan.ciar virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.Win32.Snojan.ciar?


File Info:

crc32: 1A34384A
md5: 530c60652e42e70837ef24b9e7152859
name: 530C60652E42E70837EF24B9E7152859.mlw
sha1: edc6bf14f61c495dbd701fa67cfd8f1adfc9b5b4
sha256: 1e0d78412e87e5782a6a4c459ada18fb8e5f53c4b1e7abddf5ef96551ccd9f4c
sha512: 18a5922deba2d60fc545288ab0439ce87bf2b64454de514438fa3366c5991511c465637760f6d5b06e4345b49b7317af59f0bbfe8dde8cae176f7b650e70fdbb
ssdeep: 98304:mIg9wZsJlk52ELt4MfKECVYfp3Dp84zG:C9wd52EJ4MhCVYfpTWkG
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9Esidiih goinokegyd
InternalName: TUSOSE.EXE
FileVersion: 3.1.9.4
CompanyName: xa9Esidiih goinokegyd
ProductName: TUSOSE
ProductVersion: 3.1.9.4
OriginalFilename: tusose.exe
Translation: 0x0409 0x04e4

Trojan.Win32.Snojan.ciar also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0052ca6e1 )
LionicTrojan.Win32.Snojan.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Swizzor.based
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Occamy.A1
ALYacGen:Heur.Mint.Zamg.1
CylanceUnsafe
ZillyaTrojan.Snojan.Win32.1845
CrowdStrikewin/malicious_confidence_80% (D)
K7GWTrojan ( 0052ca6e1 )
Cybereasonmalicious.52e42e
CyrenW32/S-93ad6026!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GFCA
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan.Win32.Snojan.ciar
BitDefenderGen:Heur.Mint.Zamg.1
NANO-AntivirusTrojan.Win32.Snojan.fdxzxm
MicroWorld-eScanGen:Heur.Mint.Zamg.1
TencentMalware.Win32.Gencirc.10c9361f
Ad-AwareGen:Heur.Mint.Zamg.1
SophosMal/Generic-S
ComodoMalware@#1kthpg8njpgu1
BitDefenderThetaGen:NN.ZexaF.34266.@t0@amLjgvji
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Emotet.rc
FireEyeGeneric.mg.530c60652e42e708
EmsisoftGen:Heur.Mint.Zamg.1 (B)
JiangminDownloader.Snojan.atq
AviraTR/Crypt.XPACK.Gen
eGambitUnsafe.AI_Score_95%
Antiy-AVLTrojan/Generic.ASMalwS.26968DD
MicrosoftSoftwareBundler:Win32/Dlhelper
ArcabitTrojan.Mint.Zamg.1
GDataGen:Heur.Mint.Zamg.1
TACHYONTrojan/W32.Snojan.4463104
AhnLab-V3Malware/Win32.Generic.C2566458
Acronissuspicious
McAfeePacked-FIJ!530C60652E42
MAXmalware (ai score=100)
VBA32BScope.Trojan.Swizzor
MalwarebytesAdware.DLAssistant
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.B33C (CLASSIC)
YandexTrojan.GenAsa!TEz16Llhilc
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKrypik.CALX!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.Win32.Snojan.ciar?

Trojan.Win32.Snojan.ciar removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment