Trojan

Trojan.Generic.22690338 (file analysis)

Malware Removal

The Trojan.Generic.22690338 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.22690338 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Creates a hidden or system file
  • Creates a copy of itself

How to determine Trojan.Generic.22690338?


File Info:

crc32: 24D7C17D
md5: b2dfdd9eb7782dde2bbde8028d31ba54
name: B2DFDD9EB7782DDE2BBDE8028D31BA54.mlw
sha1: 087729ce74f61b6c6b000240dfdd9e12d3dde709
sha256: 4caaeda196c48c41f33e8d42177ff2316e97173591393b2ae8e45e3c063ed587
sha512: 47493b93688fa5b91084c66b6a51d635df7860328dfcf2d15e6618e73f5b31f398fed37d1220b31eb3b3914cc9e126bb6d9aaec0d5ccc5160562060f879c8301
ssdeep: 6144:RZHtUqCglS5pY9hIveUmfk8cxdX6TqYx7:RZHtUqCglEpY9w8cxdX6Tqk7
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: (C) 2007-2015 Disc Soft Ltd.
InternalName: Queryitem
FileVersion: 2.2.2.810
CompanyName: Disc Soft Ltd.
LegalTrademarks: (C) 2007-2015 Disc Soft Ltd.
ProductName: Queryitem
ProductVersion: 2.2.2.810
FileDescription: Notional Captcha Essential
Translation: 0x0409 0x04b0

Trojan.Generic.22690338 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.3953
CynetMalicious (score: 100)
ALYacTrojan.Generic.22690338
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaRansom:Win32/generic.ali2000010
Cybereasonmalicious.eb7782
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.FQTY
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Crusis.brl
BitDefenderTrojan.Generic.22690338
NANO-AntivirusTrojan.Win32.Crypren.evnvkq
MicroWorld-eScanTrojan.Generic.22690338
TencentWin32.Trojan.Crusis.Pgdb
Ad-AwareTrojan.Generic.22690338
SophosMal/Generic-S
ComodoMalware@#v9ugejdsaeq5
BitDefenderThetaGen:NN.ZexaF.34690.sq0@a0qpmooi
VIPRETrojan.Win32.Generic!BT
TrendMicroMal_MiliCry-1h
McAfee-GW-EditionBehavesLike.Win32.Dropper.dc
FireEyeGeneric.mg.b2dfdd9eb7782dde
EmsisoftTrojan.Generic.22690338 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1128643
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/Tiggre!rfn
AegisLabTrojan.Win32.Crusis.4!c
GDataTrojan.Generic.22690338
AhnLab-V3Trojan/Win32.Crypren.C2277412
Acronissuspicious
McAfeeArtemis!B2DFDD9EB778
MAXmalware (ai score=95)
VBA32BScope.TrojanRansom.Locky
MalwarebytesMachineLearning/Anomalous.100%
PandaTrj/CI.A
TrendMicro-HouseCallMal_MiliCry-1h
RisingRansom.Crusis!8.5724 (CLOUD)
YandexTrojan.Crusis!hcaQq6dNo1U
IkarusTrojan-Ransom.Crypter
FortinetW32/Kryptik.FQTY!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.Generic.22690338?

Trojan.Generic.22690338 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment