Trojan

How to remove “Trojan.Generic.22975256”?

Malware Removal

The Trojan.Generic.22975256 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.22975256 virus can do?

  • Network activity detected but not expressed in API logs

How to determine Trojan.Generic.22975256?


File Info:

crc32: ED26F9FF
md5: 77317c7d39a2d5fde17c9b6069c7196d
name: 77317C7D39A2D5FDE17C9B6069C7196D.mlw
sha1: f777be8bdc3b33e1e16fa695d165471245b2dbbe
sha256: df19c4c21992876f1ed1c27fcb91e057bcb27dc527cef28bcb75410b3453a446
sha512: 7b9751adaf820f64dd24b6135b4bec868edde698bddc4c4c9754596d0ee3fe901433cb36294a0fcfe8cdd9c8807751ccd795d9828819d1be8e20551153455657
ssdeep: 3072:Yi6OyPEInRXghvg1pQfuvC8usofkCQt4uZ561k/ONt9Q5u4vMB6Vq/neAv8:FmEInRXghTWq8usq/1k/ONt9QQ6Vq/nU
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
InternalName: WmiApSrv.exe
FileVersion: 5.1.2600.5512 (xpsp.080413-2108)
CompanyName: Microsoft Corporation
ProductName: Microsoftxae Windowsxae Operating System
ProductVersion: 5.1.2600.5512
FileDescription: WMI Performance Adapter Service
OriginalFilename: WmiApSrv.exe
Translation: 0x0409 0x04b0

Trojan.Generic.22975256 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacTrojan.Generic.22975256
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
Cybereasonmalicious.d39a2d
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Patched-AFR [Trj]
ClamAVWin.Dropper.Ramnit-9886751-0
KasperskyBackdoor.Win32.Hlux.gcxe
BitDefenderTrojan.Generic.22975256
NANO-AntivirusVirus.Win32.Virut-Gen.bwpxnc
MicroWorld-eScanTrojan.Generic.22975256
TencentWin32.Backdoor.Hlux.Agkv
Ad-AwareTrojan.Generic.22975256
SophosML/PE-A
BitDefenderThetaGen:NN.ZexaF.34170.jm0@aGY0Ouni
McAfee-GW-EditionBehavesLike.Win32.Virut.ch
FireEyeGeneric.mg.77317c7d39a2d5fd
EmsisoftTrojan.Generic.22975256 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Patched.Gen
eGambitUnsafe.AI_Score_100%
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataTrojan.Generic.22975256
Acronissuspicious
McAfeeArtemis!77317C7D39A2
MAXmalware (ai score=95)
MalwarebytesVirut.Virus.FileInfector.DDS
RisingTrojan.Generic@ML.91 (RDML:fs0/w4V+o54EiiflTJOHZQ)
IkarusVirus.Win32.Virut
FortinetW32/Hlux.GCXE!tr.bdr
AVGWin32:Patched-AFR [Trj]
Paloaltogeneric.ml

How to remove Trojan.Generic.22975256?

Trojan.Generic.22975256 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment