Malware

BrowserModifier:Win32/Procesemes.B malicious file

Malware Removal

The BrowserModifier:Win32/Procesemes.B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BrowserModifier:Win32/Procesemes.B virus can do?

  • Reads data out of its own binary image
  • Installs itself for autorun at Windows startup
  • Attempts to create or modify a Browser Helper Object

How to determine BrowserModifier:Win32/Procesemes.B?


File Info:

crc32: 3C194A0A
md5: 6e110536de1700f2d20a599229de0d12
name: 6E110536DE1700F2D20A599229DE0D12.mlw
sha1: c85896e15d31ecbef91afa819b415a8f226f47c6
sha256: 2f70a58aa0f52ea4b30f689672ed38b7f6f81bb7c0d12dd6d5a29989c5b8287b
sha512: 9df9a8da55a5463a1d12c45574ee120be2357cf05ed2a92c58e31353600f7654bf2dfdfeeb56292e5612552c12fe1eba4ca1bc345302357deb32b22c8405e548
ssdeep: 6144:EIE41nCrPp/vf+rQLtX4hd/XS88JOTdrLBD2XuG1:Ea4rPN+858QOp3BKXuG1
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (c) 1999-2007 Igor Pavlov
InternalName: 7zS.sfx
FileVersion: 4.57
CompanyName: Igor Pavlov
ProductName: 7-Zip
ProductVersion: 4.57
FileDescription: 7z Setup SFX
OriginalFilename: 7zS.sfx.exe
Translation: 0x0409 0x04b0

BrowserModifier:Win32/Procesemes.B also known as:

K7AntiVirusTrojan ( 001e96301 )
LionicTrojan.Win32.Hexzone.j!c
DrWebTrojan.Blackmailer.309
CynetMalicious (score: 99)
CAT-QuickHealPUA.AgentRI.S16227609
ALYacGen:Adware.Heur.tC8@@OdCUnmc
CylanceUnsafe
ZillyaTrojan.Hexzone.Win32.856
K7GWTrojan ( 001e96301 )
Cybereasonmalicious.6de170
CyrenW32/Hexzone.B.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Hexzone.P
APEXMalicious
AvastWin32:Hexzone-U [Trj]
ClamAVWin.Trojan.Hexzone-978
KasperskyTrojan-Ransom.Win32.Hexzone.gen
BitDefenderGen:Adware.Heur.tC8@@OdCUnmc
NANO-AntivirusTrojan.Win32.Hexzone.ewvlwd
ViRobotTrojan.Win32.Ransom.293494
MicroWorld-eScanGen:Adware.Heur.tC8@@OdCUnmc
TencentWin32.Trojan.Hexzone.Wpjl
SophosML/PE-A + Troj/Ransom-Gen
ComodoTrojWare.Win32.Ransom.Hexzone.~jap3@1um5rj
BitDefenderThetaGen:NN.ZedlaF.34170.tC8@aOdCUnmc
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_Hexzone.R002C0PEO21
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
FireEyeGen:Adware.Heur.tC8@@OdCUnmc
EmsisoftGen:Adware.Heur.tC8@@OdCUnmc (B)
SentinelOneStatic AI – Suspicious SFX
JiangminTrojan/Hexzone.azn
AviraTR/BHO.Gen
Antiy-AVLTrojan/Generic.ASMalwS.1E43F7
MicrosoftBrowserModifier:Win32/Procesemes.B
ZoneAlarmTrojan-Ransom.Win32.Hexzone.gen
GDataGen:Adware.Heur.tC8@@OdCUnmc
McAfeeHexZone.gen.e
MAXmalware (ai score=99)
VBA32Trojan-Ransom.Win32.Hexzone.gfh
PandaTrj/CI.A
TrendMicro-HouseCallRansom_Hexzone.R002C0PEO21
YandexTrojan.GenAsa!K2Mr85P3jtI
IkarusTrojan-Ransom.Hexzone
FortinetW32/Hexzone.P!tr
AVGWin32:Hexzone-U [Trj]
Paloaltogeneric.ml

How to remove BrowserModifier:Win32/Procesemes.B?

BrowserModifier:Win32/Procesemes.B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment