Trojan.W97M.Powload.Smbb69 is a version of the Trojan Horse malware family and it can secretly infect your computer without your knowledge. Trojan.W97M.Powload.Smbb69, once in the computer, can target different system files, cause software corruption, learn sensitive private details about you, and even control your computer.


Trojan.W97M.Powload.Smbb69 detected by multiple anti virus programs on VirusTotal

If you’ve never encountered a Trojan before and do not know what to expect from Trojan.W97M.Powload.Smbb69, we are here to give you information about this malware threat, help you deal with it, and provide you with tips on how to fend off such threats in the future.

Why didn’t my antivirus detect Trojan.W97M.Powload.Smbb69?

If this Trojan Horse has managed to attack your machine despite the presence of a quality antivirus program on it, then the reason for this is probably related to the fact that Trojan.W97M.Powload.Smbb69 is a very new threat. Most antivirus programs, even strong and expensive ones, tend to have a hard time detecting newer Trojan Horse threats because of the main malware-detection method employed by them. In almost all cases, an antivirus program would primarily rely on its database when it comes to detecting incoming virus attacks. For the most part, this method works really well – as long as a given malware threat has already been listed in the security program’s database, the antivirus should have no problem detecting and recognizing it before the virus manages to cause any damage on the computer. However, as we mentioned, Trojan.W97M.Powload.Smbb69 is a recently released Trojan Horse – one that is not fully researched yet and that is more than likely absent from the databases of many otherwise popular antivirus programs. In many cases, this is the factor that allows Trojans like Trojan.W97M.Powload.Smbb69, Wup.exe, Ground.exe to enter the computer unnoticed and undisturbed.

How do I know if the virus is in my computer?

If you aren’t sure if this virus really is on your computer, we can give you some examples of the potential infection symptoms. For starters, Trojans oftentimes cause some sort of system corruption by tinkering with different system data and settings. This could, in some cases, lead to sudden crashes, unexpected and unusual program and Windows errors, as well as overall slowness of the computer. If you have also been attacked by a Ransomware virus that has locked up most of your files, this is also a possible indication that there may be a Trojan like Trojan.W97M.Powload.Smbb69 in the system because Trojans are oftentimes used as Ransomware-distributing tools.

Potential uses of Trojan.W97M.Powload.Smbb69

Speaking of possible ways this threat could be utilized, Ransomware distribution is only one of the things that infections like Trojan.W97M.Powload.Smbb69 may be able to do. In addition to this, such Trojans may spy on you, gather sensitive data, and afterward blackmail you or even steal money directly from your banking accounts. Additionally, a lot of Trojan viruses can gain elevated privileges on the attacked computer and then begin to launch different processes without your knowledge and approval. Such processes could be related to illegal BitCoin mining using your computer, distribution of spam messages, execution of DDoS attacks, and more.


Name Trojan.W97M.Powload.Smbb69
Type Trojan
Danger Level  High (Trojans are often used as a backdoor for Ransomware)
Symptoms  If you get a Trojan in your computer, you may experience system crashes, different program errors, file corruption, and other similar symptoms.
Distribution Method Trojans are oftentimes uploaded to file-sharing sites udner the guise of useful and popular programs that may people may want to download.
Detection Tool

Remove Trojan.W97M.Powload.Smbb69

If you are looking for a way to remove Trojan.W97M.Powload.Smbb69 you can try this:

  1. Click on the Start button in the bottom left corner of your Windows OS.
  2. Go to Control Panel -> Programs and Features -> Uninstall a Program.
  3. Search for Trojan.W97M.Powload.Smbb69 and any other unfamiliar programs.
  4. Uninstall Trojan.W97M.Powload.Smbb69 as well as other suspicious programs.

Note that this might not get rid of Trojan.W97M.Powload.Smbb69 completely. For more detailed removal instructions follow the guide below.

If you have a Windows virus, continue with the guide below.

If you have a Mac virus, please use our How to remove Ads on Mac guide.

If you have an Android virus, please use our Android Malware Removal guide.

If you have an iPhone virus, please use our iPhone Virus Removal guide


Some of the steps will likely require you to exit the page. Bookmark it for later reference.

Reboot in Safe Mode (use this guide if you don’t know how to do it).



Press CTRL + SHIFT + ESC at the same time and go to the Processes Tab. Try to determine which processes are dangerous. 


Right click on each of them and select Open File Location. Then scan the files with our free online virus scanner:

Drag and Drop Files Here to Scan
Maximum file size: 128MB.

This scanner is free and will always remain free for our website's users. You can find its full-page version at:

Scan Results

Virus Scanner Result
Trojan.W97M.Powload.Smbb69AVG AV

After you open their folder, end the processes that are infected, then delete their folders. 

Note: If you are sure something is part of the infection – delete it, even if the scanner doesn’t flag it. No anti-virus program can detect all infections. 


Hold together the Start Key and R. Type appwiz.cpl –> OK.


You are now in the Control Panel. Look for suspicious entries. Uninstall it/them. If you see a screen like this when you click Uninstall, choose NO:



Type msconfig in the search field and hit enter. A window will pop-up:


Startup —> Uncheck entries that have “Unknown” as Manufacturer or otherwise look suspicious.

  • Remember this step – if you have reason to believe a bigger threat (like ransomware) is on your PC, check everything here.

Hold the Start Key and R –  copy + paste the following and click OK:

notepad %windir%/system32/Drivers/etc/hosts

A new file will open. If you are hacked, there will be a bunch of other IPs connected to you at the bottom. Look at the image below:


If there are suspicious IPs below “Localhost” – write to us in the comments.


Type Regedit in the windows search field and press Enter.

Once inside, press CTRL and F together and type the virus’s Name. Right click and delete any entries you find with a similar name. If they don’t show up this way, go manually to these directories and delete/uninstall them:

  • HKEY_CURRENT_USER—-Software—–Random Directory. It could be any one of them – ask us if you can’t discern which ones are malicious.
    HKEY_CURRENT_USER—-Software—Microsoft—-Windows—CurrentVersion—Run– Random
    HKEY_CURRENT_USER—-Software—Microsoft—Internet Explorer—-Main—- Random

If the guide doesn’t help, download the anti-virus program we recommended or try our free online virus scanner. Also, you can always ask us in the comments for help!


About the author


Brandon Skies

Brandon is a researcher and content creator in the fields of cyber-security and virtual privacy. Years of experience enable him to provide readers with important information and adequate solutions for the latest software and malware problems.

Leave a Comment