Malware

Brresmon.76 (B) removal guide

Malware Removal

The Brresmon.76 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Brresmon.76 (B) virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • The binary likely contains encrypted or compressed data.
  • Executed a process and injected code into it, probably while unpacking
  • Deletes its original binary from disk
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself

How to determine Brresmon.76 (B)?


File Info:

crc32: AA1527D6
md5: 7017d58654599237de50546b4dc280db
name: 7017D58654599237DE50546B4DC280DB.mlw
sha1: 8b05698f5306cb308a220c499a2ba554752c731a
sha256: 7c30c91d4c882a8516f980b8279af82db8d7527745efc8eb4c4ee0fc06f88e56
sha512: ba4a3c0d3950cc1365c464ce466d659ded13dc96d531d66c5234c2f4bf426a3bf48017d8718edefb204c55ea52df44df6019f8f48826e0a03663e8fbd02459dd
ssdeep: 6144:Bh1J717Ggsk94zHrhjUc6jzddflZmkhMF2NKKpVLYCo/JMQI39hV:jvx7GX+4zHlG+eK45MJMQI3HV
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (c) 2006-2014 Open Source Software community LGPL
InternalName: Mary Remotehelp
CompanyName: Open Source Software community LGPL
ProductName: Mary Remotehelp
ProductVersion: 8.7.5.612
FileDescription: Get Jedeskog Browsers
Translation: 0x0409 0x04b0

Brresmon.76 (B) also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0055e3e61 )
LionicTrojan.Win32.Foreign.j!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Brresmon.76
CylanceUnsafe
SangforVirus.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (D)
AlibabaRansom:Win32/Foreign.e081039f
K7GWTrojan ( 0055e3e61 )
Cybereasonmalicious.654599
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Delf.ATW
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Foreign.niox
BitDefenderGen:Variant.Brresmon.76
NANO-AntivirusTrojan.Win32.RiskGen.ejczaf
MicroWorld-eScanGen:Variant.Brresmon.76
TencentWin32.Trojan.Foreign.Adal
Ad-AwareGen:Variant.Brresmon.76
SophosMal/Generic-S + Mal/Kryptik-DC
ComodoMalware@#mxvxmtliv8tq
BitDefenderThetaGen:NN.ZexaF.34142.wq0@aGigFBki
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_HPLOCKY.SME
McAfee-GW-EditionBehavesLike.Win32.Generic.fc
FireEyeGeneric.mg.7017d58654599237
EmsisoftGen:Variant.Brresmon.76 (B)
SentinelOneStatic AI – Suspicious PE
WebrootW32.Gen.Bt
AviraTR/Crypt.ZPACK.mqrgv
eGambitUnsafe.AI_Score_98%
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Dynamer!ac
GDataGen:Variant.Brresmon.76
AhnLab-V3Trojan/Win32.Foreign.C2103831
McAfeeRDN/Ransom.bo
MAXmalware (ai score=100)
VBA32BScope.Trojan.Yakes
MalwarebytesMachineLearning/Anomalous.94%
PandaTrj/CI.A
TrendMicro-HouseCallRansom_HPLOCKY.SME
RisingTrojan.Generic@ML.88 (RDMK:oPIf50FDZf4WnW9lMyE8bg)
YandexTrojan.Foreign!RSSXLI4OXNM
IkarusTrojan-Ransom.GandCrab
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Foreign.NIOX!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Brresmon.76 (B)?

Brresmon.76 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment