Trojan

What is “Trojan.Generic.22801128”?

Malware Removal

The Trojan.Generic.22801128 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.22801128 virus can do?

  • At least one process apparently crashed during execution
  • Dynamic (imported) function loading detected
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine Trojan.Generic.22801128?


File Info:

name: 34294EDF65025162429E.mlw
path: /opt/CAPEv2/storage/binaries/05ca58cf7a290e7fd9403446baeca4a885239b78e64e65ce1dcff166d2af2a94
crc32: 26ACDECC
md5: 34294edf65025162429ebc36dee83fe2
sha1: 5206053cb7da59c74443a4d812ebf2b190548ba2
sha256: 05ca58cf7a290e7fd9403446baeca4a885239b78e64e65ce1dcff166d2af2a94
sha512: 9d6aac4452cee495b1f3a00c56ff33b848982a9a870c54f1e4a972ac9aad3deab0f0de7c9408918760d6c9fb7d741a89836f05c2b9c256a73becbe426b1cc758
ssdeep: 6144:zUHwcmg6QIDRvBu/a62psg5i8kKlXzR7VO3mErONn1RLw:k1VRIDRJuC6dg6WxNn1R0
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D0848D42B790857BCA424A311A673B76A3FDDE065F24978F178CF91EFA30783A521325
sha3_384: a2c7aafd05a7ad88a7fa1c98f9eb2426db0f7857c40c8d03cf95af17c0253e79b38821be2c324798364355dfd95c3e77
ep_bytes: 558bec6aff68b8ce4300685a7c430064
timestamp: 2004-06-21 00:29:42

Version Info:

CompanyName:
FileDescription: XPShorter Microsoft 基础类应用程序
FileVersion: 1, 0, 0, 1
InternalName: XPShorter
LegalCopyright: 版权所有 (C) 2003
LegalTrademarks:
OriginalFilename: XPShorter.EXE
ProductName: XPShorter 应用程序
ProductVersion: 1, 0, 0, 1
Translation: 0x0804 0x04b0

Trojan.Generic.22801128 also known as:

BkavW32.AIDetect.malware1
CynetMalicious (score: 100)
FireEyeGeneric.mg.34294edf65025162
ALYacTrojan.Generic.22801128
CylanceUnsafe
K7AntiVirusTrojan ( 00523fe81 )
AlibabaPacked:Win32/Katusha.8ccef37f
K7GWTrojan ( 00523fe81 )
Cybereasonmalicious.f65025
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.DTMVAVW
APEXMalicious
Paloaltogeneric.ml
KasperskyPacked.Win32.Katusha.o
BitDefenderTrojan.Generic.22801128
NANO-AntivirusTrojan.Win32.Katusha.ewwksa
MicroWorld-eScanTrojan.Generic.22801128
AvastWin32:WrongInf-A [Susp]
TencentWin32.Packed.Katusha.Lhdh
Ad-AwareTrojan.Generic.22801128
SophosMal/Generic-S
ComodoMalware@#3ewffyqah8oi5
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0GH121
McAfee-GW-EditionRDN/Generic.grp
EmsisoftTrojan.Generic.22801128 (B)
IkarusTrojan.Win32.Yakes
GDataTrojan.Generic.22801128
AviraTR/Shakat.lkbhu
MicrosoftTrojan:Win32/Wacatac.B!ml
McAfeeRDN/Generic.grp
MAXmalware (ai score=86)
VBA32TScope.Malware-Cryptor.SB
TrendMicro-HouseCallTROJ_GEN.R002C0GH121
SentinelOneStatic AI – Malicious PE
FortinetW32/Katusha.DTMVAVW!tr
AVGWin32:WrongInf-A [Susp]
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Trojan.Generic.22801128?

Trojan.Generic.22801128 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment