Trojan

About “Trojan.Generic.5116558” infection

Malware Removal

The Trojan.Generic.5116558 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.5116558 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • A process attempted to delay the analysis task by a long amount of time.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Generic.5116558?


File Info:

crc32: AAF255EA
md5: 0fff1d3cbfa04b1c7d1400fe7339c4f3
name: mw2-nointro.exe
sha1: b490ba9915aebb23f502298352a87b545e4a61df
sha256: 2cdcc5504645f14405d8c6227884706437f6006983b5983a12a11694ceefac23
sha512: d3147f0dd1f1ca4e4c8f16850e1f5eeff6f7d5699b6539b0b76084197ae04732bd5adb8f10a36622c64de62457168b4cee6d69c42ab4bc58a4e2f76de8c25da2
ssdeep: 1536:XeogqcdvPJVrR6EIyjUTCdbWPls/IcT9ifZGILU79LTr9FmeN5jnK+Ppt:XvexJiEIs2CQ96BT9mkFhr9FbKu
type: PE32 executable (GUI) Intel 80386, for MS Windows, PECompact2 compressed

Version Info:

0: [No Data]

Trojan.Generic.5116558 also known as:

MicroWorld-eScanTrojan.Generic.5116558
CAT-QuickHealTrojan.Zenshirsh.SL7
McAfeeArtemis!0FFF1D3CBFA0
CylanceUnsafe
K7GWUnwanted-Program ( 004b8d601 )
K7AntiVirusUnwanted-Program ( 004b8d601 )
CyrenW32/GenPua.0FFF1D3C!Olympus
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/HackTool.Patcher.A potentially unsafe
ClamAVWin.Trojan.Agent-335685
BitDefenderTrojan.Generic.5116558
Ad-AwareTrojan.Generic.5116558
SophosTroj/QPatch-A
F-SecureTrojan.Generic.5116558
ZillyaTool.Patcher.Win32.1096
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Trojan.cc
Trapminemalicious.moderate.ml.score
EmsisoftTrojan.Generic.5116558 (B)
SentinelOnestatic engine – malicious
WebrootW32.Malware.Gen
MAXmalware (ai score=98)
KingsoftWin32.Troj.Generic.(kcloud)
Endgamemalicious (high confidence)
MicrosoftPUA:Win32/Keygen
ALYacTrojan.Generic.5116558
MalwarebytesHackTool.Agent
PandaTrj/CI.A
ArcabitTrojan.Generic.D4E128E
RisingTrojan.Win32.Generic.1372ADD7 (C64:YzY0Oqofp1A2j7D5)
YandexHackTool.Patcher!U55guIHQmPo
IkarusPacked.Win32.Klone
GDataTrojan.Generic.5116558
AVGWin32:Malware-gen
Cybereasonmalicious.cbfa04
AvastWin32:Malware-gen
CrowdStrikemalicious_confidence_60% (D)
Qihoo-360HEUR/QVM17.0.Malware.Gen

How to remove Trojan.Generic.5116558?

Trojan.Generic.5116558 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment