What is Script:SNH-gen [Trj]?

I keep getting a Message from Avast that there is a File called ioc0F64FFCE-C8F0-584D-94D1-2AE8AF63584D.vbs Infected with Script:SNH-gen [Trj] on my PC… Anyone know what that is about?

i keep getting that alert when i search thing

I think this is trojan virus injected in your pc when you browse website. I got same issue with my wordpress website on server. It affect many .js and .php files.

My AVG is giving me this to now recently since yesterday coming from chrome from a site called incduring.com

what it is? Is a annoy warning that you have been infected, mine is affecting internet browser, which is called brave, it says snh script is trying to use brave and connect to trackjina.com

When this was happening to me on Google Chrome every time I searched, I removed some browser extensions and I believe it was a Flash Player replacement extension that caused it, it was on my computer for some time before being an issue though. Damn Adobe and not having flash player anymore

Is this something I need to worry about?

So anyone searching for this problem in the future (I’m on a iMac)

Script:SNH-gen {trg} is part of a trojan that’s on your browser extensions and computer which will trigger notifications on your computer (if on iMac not sure about pc in this case) stating that you have a virus , click on these pop up notifications in any way and this can lead to a backdoor for hackers to access your computer/details from your computer i.e passwords.

After installing a decent antivirus protection,
Disconnect your WiFi (no WiFi - no access for hackers)

I chose avast premium to locate and resolve these issues - run a deep scan.
I’m paranoid so did a deep scan like two/three times over the 48 hours after infection lol, everything was clean after the first scan.

(Side note if you have a external SSD or HDD’s you can run a targeted scan on these too by right clicking>services>scan with…) Don’t think this is incredibly necessary as deep scan I’m sure covers it but you know, just in case.

Also go into any browser which has extensions (chrome for me) and you will most likely see an unknown extension (in my case it was hack.jl or something like this ( I didn’t look properly I saw hack and removed the extension)
These two tasks will resolve any issues with pop ups.

For me I got (from 1 sketchy download which I knew was a risk)
4x Script:SNH-gen {Trg}
and
2x HTML:fakeupdate-C {Trj}

So essentially I was fucked. If I ran one of the fakeupdate Trojans these are commonly
banking trojans. Also in some cases, post exploitation toolkits are later executed to encrypt your compromised WiFi network with ransomware.

So these are incredibly important to resolve, fast.

I used avast to remove these issues but also I used Guardio to check any data breaches in any of my email accounts, passwords etc.

Always use a VPN when connected to a network.

My Banking passwords after all this were changed, even though I didn’t think I was in any danger of a banking trojan, can’t be too careful.

All resolved as of this comment.

Hope this helps someone.

A deep scan with the free version of AVG will quarantine SNH-gen trojan

Script:SNH-gen [drp]

Nema to nic spolecneho s virem nebo malwarem ci trojskym konem. Antivir hlasi vzdy, kdyz stahujete z prohlizece nebo torrentu soubor, ktery obchazi aktivaci programu, at mate z nej plnou verzi, neboli to je hack soubor. Takze jak ho stahnout? Reseni je, vypnout docasne atvivir i firewall.

Script:SNH-gen [drp]

It has nothing to do with a virus or malware or a Trojan horse. The antivirus always beeps when you download a file from browsing or a torrent that bypasses the activation of the program and you have the full version of it, i.e. it is a hack file. So how to download it? The solution is to temporarily turn off atvivir and the firewall.

Have you found a solution to this as i’m currently getting it since chrome updated itself

C\ProgramData\KasperskyLab\AVP20.0\Temp\tempio\ And then the Name of the Infected File…

Do you know of a way to get rid of it? :o

I just received a .doc file with the same trojan.

It looks like it tries to have me activate scripts in Microsoft Word…

Same, I have tried to reset chrome, Malwarebytes scan and AVG scan, but none have worked thus far.

Edit 1: After doing another chrome reset and leaving the extensions off I haven’t had it pop up yet, so give that a try and then start turning on extensions one by one to see if it’s one of them.

yo did u find a fix to it? i am having the same problem. script:SNH-gen[tri], AVG "we safetly aborted connection on incduring.com … any helps pls? deep scan done - problem still exists… advance system care scanned didnt fix it either. deleted all history/etc on chrome yet the problem still remains

omg I think it is the flash player cause I’ve never had this happen until recently and I had a flash player extension. Had downloaded it to play old flash games.

Actually I did, I reset chrome to defaults and restarted my pc. Also cleared cookies

i also reset chrome to defaults and retarted my pc. and when i turn on chrome all my extensions (ad blocks youtube ad block dark reader etc) are all off and the problem seems to be gone. but once i turn back on all those ad blocking extensions. it came back. i dont want to uninstall and re-install chrome coz i will lose all my bookmarkssss. sigh… AVG antivirus is pissing me off as it keeps poping the notification saying script:SNH-gen and url is http:s//:incduring.com/23844443b92e3f7d7b.js?fr=null (DONT CLICK )

**update** i removed Ublock extension. the problem “seems” to be gone.
not sure if has anything to do with chrome updating a few days ago… maybe the extension are causing it? *Finger crossed it is ublock extension*

You’re bookmark storage location
C:\Users(YourUserName)\AppData\Local\Google\Chrome\User Data\Default“, just replace the (YourUserName) part of the path with your username on your computer.

I haven’t had to use mine in the last two installs because this data was stored in the google cloud but i save it anyway.