Trojan

Trojan.Generic.22838990 removal

Malware Removal

The Trojan.Generic.22838990 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.22838990 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Starts servers listening on 0.0.0.0:7200, 0.0.0.0:27201
  • Performs some HTTP requests
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Checks for the presence of known windows from debuggers and forensic tools
  • Anomalous binary characteristics

Related domains:

www.geem2.com

How to determine Trojan.Generic.22838990?


File Info:

crc32: BBC28042
md5: cc5907db60e1cabbb9b2b5140206cd94
name: CC5907DB60E1CABBB9B2B5140206CD94.mlw
sha1: be6ff6271f18a3e321dd6c4f17630516e1da692b
sha256: ac07200ce4dcdb8c7beeba1c893a29794e99a3838a0b399536bdc5e6712c84e0
sha512: 8cd1250587b181926452c9cddea4ae4103df7bd98ceb237d9e76bddd96976239b9565ad636b16ba5ce5b4f1ac3ac6aee63312ca9acc1a181342457df676ce5c5
ssdeep: 24576:GfhHYl854jRjR1j/CjhK0LiYgpA9JWodXyOR/a4iCGAgQVWB1skBX/qjCbi30s:mu854jN/+hK0LiYgpgJWIy2/zWrsaX/
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
InternalName:
FileVersion: 1.0.0.18
CompanyName: GeeM2x6e38x620fx7f51x5173
LegalTrademarks:
Comments:
ProductName:
ProductVersion: 1.0.0.0
FileDescription: http://www.geem2.com
OriginalFilename:
Translation: 0x0804 0x03a8

Trojan.Generic.22838990 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0052c8a31 )
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Generic.22838990
ALYacTrojan.Generic.22838990
CylanceUnsafe
SangforTrojan.Win32.Generic.8
AlibabaTrojan:Win32/XPACK.4d6bde73
K7GWTrojan ( 0052c8a31 )
Cybereasonmalicious.b60e1c
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.NJJZZQE
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Generic.22838990
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
TencentWin32.Trojan.Generic.Szvd
Ad-AwareTrojan.Generic.22838990
SophosMal/Generic-S
VIPRETrojan-Dropper.Win32.Resdro.b (v) (not malicious)
McAfee-GW-EditionBackDoor-EXZ
FireEyeGeneric.mg.cc5907db60e1cabb
EmsisoftTrojan.Generic.22838990 (B)
SentinelOneStatic AI – Suspicious PE
AviraTR/Crypt.XPACK.Gen
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:Win32/Filecoder!ml
AegisLabTrojan.Win32.Generic.4!c
GDataTrojan.Generic.22838990
McAfeeBackDoor-EXZ
MAXmalware (ai score=99)
PandaTrj/CI.A
RisingTrojan.Generic@ML.94 (RDML:fmUrFxFKtE6qTdLyVNwzCg)
IkarusTrojan.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Filecoder.FV!tr.ransom
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.Generic.22838990?

Trojan.Generic.22838990 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment