Trojan

Should I remove “Trojan.Generic.19786582”?

Malware Removal

The Trojan.Generic.19786582 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.19786582 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • At least one IP Address, Domain, or File Name was found in a crypto call
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Uses Windows utilities for basic functionality
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Creates a copy of itself

How to determine Trojan.Generic.19786582?


File Info:

crc32: 572A0CB5
md5: 01937538c22ef1d59467ba49e82c5015
name: 01937538C22EF1D59467BA49E82C5015.mlw
sha1: d6c550143c0394df44092449b282e54a95a12f70
sha256: f2dbaca5d023f3a754d7e540e2e858526f997826166c50f843c4f6a09b2ef193
sha512: 26c03d558ce7094dcb9be1507fc336413e2747f9e95cce6a6e8da05efcaacd1d4e8efb4ceed97f37f7d994d5d049ce51146a6381dc185e170cbdf02e1a4c5882
ssdeep: 12288:OBw4tn8y3AGmEvX+3IdpvX5E6opcLyXTHyaGHGJwl:UFtNfmEvX+i/hopIyDSae3l
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

Translation: 0x0809 0x04b0

Trojan.Generic.19786582 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 700000111 )
Elasticmalicious (high confidence)
DrWebWin32.HLLW.Autoruner2.26706
CynetMalicious (score: 100)
CAT-QuickHealRansom.Autoit.Stampado.A
ALYacTrojan.Generic.19786582
CylanceUnsafe
ZillyaDropper.AutoIt.Win32.1
CrowdStrikewin/malicious_confidence_80% (W)
K7GWTrojan ( 700000111 )
Cybereasonmalicious.8c22ef
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Filecoder.Philadelphia.B
APEXMalicious
AvastINF:AutoRun-BI [Wrm]
KasperskyHEUR:Worm.Script.Generic
BitDefenderTrojan.Generic.19786582
NANO-AntivirusTrojan.Win32.Autoruner2.eivyvr
MicroWorld-eScanTrojan.Generic.19786582
TencentWin32.Trojan.Generic.Dup
Ad-AwareTrojan.Generic.19786582
SophosML/PE-A + Mal/Stampado-A
BitDefenderThetaAI:Packer.618F1AC817
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_STAMPADO.F116KN
McAfee-GW-EditionBehavesLike.Win32.TrojanAitInject.gc
FireEyeGeneric.mg.01937538c22ef1d5
EmsisoftTrojan.Generic.19786582 (B)
WebrootW32.Trojan.Gen
AviraDR/AutoIt.Gen
eGambitUnsafe.AI_Score_84%
MicrosoftTrojan:Win32/Ditertag.A
GDataTrojan.Generic.19786582
AhnLab-V3Trojan/Win32.Agent.C1568857
Acronissuspicious
McAfeeArtemis!01937538C22E
MAXmalware (ai score=87)
VBA32TrojanRansom.Stampado
PandaTrj/CI.A
TrendMicro-HouseCallRansom_STAMPADO.F116KN
RisingRansom.Philadelphia/Autoit!1.BA48 (CLASSIC)
YandexTrojan.Agent!d0BdMyphgBM
IkarusTrojan-Spy.HawkEye
MaxSecureTrojan.Malware.300983.susgen
FortinetAutoIt/Philadelphia.B!tr.ransom
AVGINF:AutoRun-BI [Wrm]
Paloaltogeneric.ml

How to remove Trojan.Generic.19786582?

Trojan.Generic.19786582 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment