Malware

About “Brresmon.120” infection

Malware Removal

The Brresmon.120 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Brresmon.120 virus can do?

  • Executable code extraction
  • Compression (or decompression)
  • Creates RWX memory
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Exhibits possible ransomware file modification behavior
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Checks the CPU name from registry, possibly for anti-virtualization
  • Anomalous binary characteristics

How to determine Brresmon.120?


File Info:

crc32: 4709F1A6
md5: e7c9c94a5a3027086248e35668aad3fb
name: E7C9C94A5A3027086248E35668AAD3FB.mlw
sha1: 15047d269ac8657400dd56eaff7214342b46627a
sha256: a3a2b12f514929ab79e929e9d97b41ee13e0bc8a09e5c3fb5daa1c7582c21f10
sha512: 2251e3396114457bd84b765545261233edb92be9093ccd41bf90a008eea90d3d299105cb4e2d09fb754d93842f93d7e78a68d9ec7d797613c9083713e7684f6c
ssdeep: 6144:v1Se74P87AQlINJR8XFh7RsqkzbmQ4EVSOd21hvu74VKzH/EKJ/rajbg4eduYg4h:vZevxOfNOd0IIKVog9uxu
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2004 - 2013, SopCast.com. All rights reserved.
InternalName: SopCast.exe
FileVersion: 4.2.0.800
CompanyName: www.sopcast.com
Comments: www.sopcast.com
ProductName: SopCast
ProductVersion: 4.2.0.800
FileDescription: SopCast Main Application
OriginalFilename: SopCast.exe
Translation: 0x0409 0x04e4

Brresmon.120 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053fb461 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacGen:Variant.Brresmon.120
CylanceUnsafe
ZillyaTrojan.GandCrypt.Win32.1130
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/GandCrypt.a8cb29c9
K7GWTrojan ( 0053fb461 )
Cybereasonmalicious.a5a302
SymantecDownloader
ESET-NOD32a variant of Win32/Kryptik.GLNI
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.GandCrypt.fxt
BitDefenderGen:Variant.Brresmon.120
NANO-AntivirusTrojan.Win32.GandCrypt.fjnuwy
ViRobotTrojan.Win32.GandCrab.454656.A
MicroWorld-eScanGen:Variant.Brresmon.120
TencentMalware.Win32.Gencirc.114d6186
Ad-AwareGen:Variant.Brresmon.120
SophosMal/Generic-S
ComodoMalware@#1tm03rb4h72j0
BitDefenderThetaGen:NN.ZexaF.34692.Bu1@a4idkthj
McAfee-GW-EditionTrojan-FQUD!E7C9C94A5A30
FireEyeGeneric.mg.e7c9c94a5a302708
EmsisoftGen:Variant.Brresmon.120 (B)
AviraHEUR/AGEN.1111393
eGambitUnsafe.AI_Score_94%
Antiy-AVLTrojan/Generic.ASMalwS.28B1BC4
MicrosoftVirTool:Win32/CeeInject.BDE!bit
ArcabitTrojan.Brresmon.120
AegisLabTrojan.Win32.GandCrypt.4!c
GDataGen:Variant.Brresmon.120
AhnLab-V3Win-Trojan/Gandcrab09.Exp
McAfeeTrojan-FQUD!E7C9C94A5A30
MAXmalware (ai score=100)
VBA32BScope.TrojanRansom.GandCrypt
MalwarebytesRansom.GandCrab
PandaTrj/GdSda.A
RisingRansom.GandCrypt!8.F33E (CLOUD)
YandexTrojan.GandCrypt!DctrkK+XMcg
IkarusTrojan.Win32.Crypt
FortinetW32/GenKryptik.CKDY!tr.ransom
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Brresmon.120?

Brresmon.120 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment