Malware

How to remove “Mal/Generic-S + Troj/NanoCr-KV”?

Malware Removal

The Mal/Generic-S + Troj/NanoCr-KV is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-S + Troj/NanoCr-KV virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Mal/Generic-S + Troj/NanoCr-KV?


File Info:

crc32: 30197EF9
md5: ea28f2d01808072dbe45804f514ef905
name: EA28F2D01808072DBE45804F514EF905.mlw
sha1: 771ff981d42d6c7fc3550de8cb109e3311b0e0fa
sha256: 618d343a6d7f54a0bfd917555c79c6a777b10a35fc2da0d75f6d85354de40637
sha512: 14c8f4c649f60238a1398bf28cd8a1a1c94d14b74d888a26bca537317de1d1beada94a6fdb5d51a3ad30ee4c07e389e0fe6eb988e29df485808fd19114715d16
ssdeep: 6144:zE65Gn+cJUsvcfFH+mff7BBTkNAo23KB2pTwcSn9vCfEvgYt:UnVWsvcdHpTkJ23d9ZSn9V9t
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: Mozilla Corporation
FileVersion: 30.0
CompanyName: Mozilla Corporation
ProductName: Mozilla Webapp Runtime App Uninstaller
ProductVersion: 30.0
FileDescription: Mozilla Webapp Runtime App Uninstaller
OriginalFilename: webapp-uninstaller.exe
Translation: 0x0000 0x04b0

Mal/Generic-S + Troj/NanoCr-KV also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.36229608
FireEyeGeneric.mg.ea28f2d01808072d
ALYacTrojan.GenericKD.36229608
CylanceUnsafe
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.36229608
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.1d42d6
CyrenW32/MSIL_Kryptik.CMB.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:RATX-gen [Trj]
KasperskyHEUR:Backdoor.MSIL.NanoBot.gen
AlibabaBackdoor:MSIL/NanoCore.6d228d83
AegisLabTrojan.Multi.Generic.4!c
Ad-AwareTrojan.GenericKD.36229608
SophosMal/Generic-S + Troj/NanoCr-KV
ComodoTrojWare.Win32.UMal.omnmb@0
DrWebTrojan.Nanocore.23
TrendMicroTROJ_GEN.R044C0PAO21
McAfee-GW-EditionPWS-FCTB!EA28F2D01808
EmsisoftTrojan.GenericKD.36229608 (B)
IkarusWin32.SuspectCrc
MAXmalware (ai score=83)
KingsoftWin32.Hack.Undef.(kcloud)
MicrosoftTrojan:Win32/Ymacco.AA61
ArcabitTrojan.Generic.D228D1E8
ZoneAlarmHEUR:Backdoor.MSIL.NanoBot.gen
GDataTrojan.GenericKD.36229608
AhnLab-V3Malware/Gen.RL_Reputation.C4307247
McAfeePWS-FCTB!EA28F2D01808
PandaTrj/GdSda.A
ZonerTrojan.Win32.101228
ESET-NOD32MSIL/NanoCore.E
TrendMicro-HouseCallTROJ_GEN.R044C0PAO21
TencentWin32.Trojan.Inject.Auto
YandexTrojan.Igent.bVddab.4
FortinetMalicious_Behavior.SB
BitDefenderThetaGen:NN.ZemsilF.34780.Nm0@aq!nSqe
AVGWin32:RATX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Generic/Backdoor.BO.5c9

How to remove Mal/Generic-S + Troj/NanoCr-KV?

Mal/Generic-S + Troj/NanoCr-KV removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment