Malware

Generic.ServU.2223D7DB removal instruction

Malware Removal

The Generic.ServU.2223D7DB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.ServU.2223D7DB virus can do?

  • Starts servers listening on 127.0.0.1:43958
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX

Related domains:

edgedl.me.gvt1.com

How to determine Generic.ServU.2223D7DB?


File Info:

crc32: 399D0C00
md5: a43e4d42fad0299362fa1774bf5dd9de
name: A43E4D42FAD0299362FA1774BF5DD9DE.mlw
sha1: 3effe501a40c554e038a1738ddcc7433f6523d52
sha256: de7b39aa7e440dcb193830d3fdc42f65be44ff919573be7647b32b645ae6dc18
sha512: 419a7c5665a452233dc9c4d0c139767a09205cec69e08faa4e58957b76e497f2d04e0bb1a63b8f7a6afdfba14e330d06598a0661747ce0402bc085a0ba660d0d
ssdeep: 24576:Q2N1AR2KOFjzbwyuRE2JhoYXsSXI+uifIQtz:Q2PAoK2zbOoYcKIli
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Generic.ServU.2223D7DB also known as:

DrWebBackDoor.Servu.5004
ClamAVWin.Trojan.Agent-7656827-0
ALYacGeneric.ServU.2223D7DB
CylanceUnsafe
ZillyaBackdoor.ServU.Win32.40
SangforTrojan.Win32.Save.a
CyrenW32/Tool.VNEV-8492
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/ServU-Daemon potentially unsafe
APEXMalicious
AvastWin32:Trojan-gen
CynetMalicious (score: 100)
Kasperskynot-a-virus:Server-FTP.Win32.Serv-U.5004
BitDefenderGeneric.ServU.2223D7DB
NANO-AntivirusRiskware.Win32.Serv-U.hseb
MicroWorld-eScanGeneric.ServU.2223D7DB
Ad-AwareGeneric.ServU.2223D7DB
SophosMal/Generic-R + Mal/ServU-A
ComodoApplicUnsaf.Win32.ServU-Daemon@1ejd
BitDefenderThetaGen:NN.ZexaF.34170.XmGfa8ILsLhi
VIPREServer-FTP.Win32.Serv-U.gen (not malicious)
TrendMicroTSPY_SERVU_DAEMON
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
FireEyeGeneric.mg.a43e4d42fad02993
EmsisoftGeneric.ServU.2223D7DB (B)
SentinelOneStatic AI – Malicious PE
JiangminServer-FTP.Serv-U.ai
AviraTR/Dldr.Delphi.Gen
Antiy-AVLTrojan/Generic.ASMalwS.30361
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataGeneric.ServU.2223D7DB
AhnLab-V3Win-AppCare/ServU.811008.C
McAfeeServU-Daemon.aj
PandaTrj/Genetic.gen
TrendMicro-HouseCallTSPY_SERVU_DAEMON
RisingTrojan.DL.Agent.xnw (CLASSIC)
YandexTrojan.ServU-Daemon!2mXKXYyPNmE
Ikarusnot-a-virus:Server-FTP.Win32.Serv-U
FortinetRiskware/ServU
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Generic.ServU.2223D7DB?

Generic.ServU.2223D7DB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment