Malware

Win32:GenMaliciousA-BTH [Trj] information

Malware Removal

The Win32:GenMaliciousA-BTH [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32:GenMaliciousA-BTH [Trj] virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32:GenMaliciousA-BTH [Trj]?


File Info:

crc32: 218E5CA7
md5: d1f7f5acd83860695ba75c32459c90ee
name: D1F7F5ACD83860695BA75C32459C90EE.mlw
sha1: a52c4451e6b960af9f9a1a73deb36212b69ba1b4
sha256: 557284a27d9573a33004d6701b6f42d25dddb14eda07b7e599678aad65f6d29f
sha512: 1b360b1d93a1dedb36f24dc56c665a16dd2c37c92da08ed0d24aa1f39f1179870d2afc758002acfec93fb8a6d8bbd002a0651773ad73f240a442617dab4a3b78
ssdeep: 12288:tNSxEvTMt+98wvNplIz75mwMj9X+CXOhBhf4hdaNT2pOTLwkqBtFiriRih9rI/s:7quTMt9w1jIsBX+CuBhf44bLwkWjA9UU
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2015
Assembly Version: 1.0.0.0
InternalName: stub.exe
FileVersion: 1.0.0.0
ProductName: stub
ProductVersion: 1.0.0.0
FileDescription: stub
OriginalFilename: stub.exe

Win32:GenMaliciousA-BTH [Trj] also known as:

K7AntiVirusTrojan ( 00495b5b1 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader23.27334
CynetMalicious (score: 100)
ALYacGen:Heur.MSIL.Krypt.!cdmip!.2
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 00495b5b1 )
Cybereasonmalicious.cd8386
BaiduWin32.Trojan-Downloader.Agent.cf
CyrenW32/Trojan.SNVN-8094
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/TrojanDropper.Agent.AHC
APEXMalicious
AvastWin32:GenMaliciousA-BTH [Trj]
ClamAVWin.Packed.Generic-6871405-0
KasperskyHEUR:Trojan-Dropper.Win32.Generic
BitDefenderGen:Heur.MSIL.Krypt.!cdmip!.2
NANO-AntivirusTrojan.Win32.Jorik.dkmpej
MicroWorld-eScanGen:Heur.MSIL.Krypt.!cdmip!.2
TencentMalware.Win32.Gencirc.10b37cad
Ad-AwareGen:Heur.MSIL.Krypt.!cdmip!.2
SophosML/PE-A + Mal/MSIL-ST
BitDefenderThetaGen:NN.ZemsilF.34266.3q3@aG74etm
FireEyeGeneric.mg.d1f7f5acd8386069
EmsisoftGen:Heur.MSIL.Krypt.!cdmip!.2 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Generic.biqre
AviraTR/Dropper.Gen
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.124D3B3
MicrosoftTrojan:MSIL/Bladabindi
GDataGen:Heur.MSIL.Krypt.!cdmip!.2
AhnLab-V3Trojan/Win32.Agent.R149862
McAfeeTrojan-FIUP!D1F7F5ACD838
MAXmalware (ai score=85)
VBA32Hoax.Blocker
MalwarebytesTrojan.Downloader.MSIL
YandexTrojan.DR.Agent!Tbk3ZeGR1ws
IkarusTrojan-Dropper.MSIL.Agent
FortinetMSIL/Agent.BLY!tr
AVGWin32:GenMaliciousA-BTH [Trj]

How to remove Win32:GenMaliciousA-BTH [Trj]?

Win32:GenMaliciousA-BTH [Trj] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment