Trojan

About “Trojan.Generic.22577095” infection

Malware Removal

The Trojan.Generic.22577095 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.22577095 virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Unconventionial binary language: Chinese (Simplified)
  • Sniffs keystrokes
  • Installs itself for autorun at Windows startup
  • Anomalous binary characteristics

How to determine Trojan.Generic.22577095?


File Info:

crc32: C7AB52BD
md5: fbcd573d833258e8ac2ac089368740d1
name: FBCD573D833258E8AC2AC089368740D1.mlw
sha1: 7bbb69fce04d0175e534a8ea9a3ab36bb5e1930d
sha256: 9919189cd43f280123f41f9162dd2fcaf6cfad8747a78eed83b71b8ec4b05ba3
sha512: 412dd262c0f7d19baf5049fe4c8328b373bfeb9f2d1b85b939979ae05d05b7489d859171b2ef391a03cbe88a17989c1f2e3caef17664a7ddfc420011107fc9b7
ssdeep: 24576:hvltZ6TpzcBBrdah2I0MrxyWDoN3Xsaab7c:hMmdl738db7c
type: PE32 executable (console) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

LegalCopyright: ChunSource Copyright (C)2017-2017
InternalName: winsock.exe
FileVersion: 1.0.0.0
CompanyName: ZS ChunSource Co., Ltd.
ProductName: winsock
ProductVersion: 1.0.0.0
FileDescription: ChunSourcce Ltd Work App
OriginalFilename: winsock.exe
Translation: 0x0804 0x04b0

Trojan.Generic.22577095 also known as:

K7AntiVirusTrojan ( 005713c91 )
LionicTrojan.Win32.PornoAsset.j!c
Elasticmalicious (high confidence)
ALYacTrojan.Generic.22577095
ZillyaTrojan.PornoAsset.Win32.24012
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/PornoAsset.588f5fa9
K7GWTrojan ( 005713c91 )
Cybereasonmalicious.d83325
SymantecTrojan Horse
ESET-NOD32a variant of Win32/Agent.SVP
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 99)
KasperskyTrojan-Ransom.Win32.PornoAsset.dave
BitDefenderTrojan.Generic.22577095
NANO-AntivirusTrojan.Win32.PornoAsset.euquam
MicroWorld-eScanTrojan.Generic.22577095
TencentWin32.Trojan.Pornoasset.Egyf
Ad-AwareTrojan.Generic.22577095
ComodoMalware@#30d9nuvl537b0
BitDefenderThetaGen:NN.ZexaF.34170.dL0@aurCFjpi
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericRXPN-YK!FBCD573D8332
FireEyeGeneric.mg.fbcd573d833258e8
EmsisoftTrojan.Generic.22577095 (B)
JiangminTrojan.PornoAsset.fpf
AviraTR/BAS.Samca.30216986
Antiy-AVLTrojan/Generic.ASMalwS.225DA18
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataTrojan.Generic.22577095
TACHYONRansom/W32.PornoAsset.1099264
AhnLab-V3Trojan/Win32.PornoAsset.C4095474
McAfeeGenericRXPN-YK!FBCD573D8332
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_PornoAsset.R002C0OIO21
IkarusTrojan-Ransom.PornoAsset
FortinetW32/Agent.SVP!tr
AVGWin32:Malware-gen

How to remove Trojan.Generic.22577095?

Trojan.Generic.22577095 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment