Malware

Dialer.Generic.26528 (file analysis)

Malware Removal

The Dialer.Generic.26528 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Dialer.Generic.26528 virus can do?

  • Creates RWX memory
  • Unconventionial binary language: Russian
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Checks for the presence of known windows from debuggers and forensic tools
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Dialer.Generic.26528?


File Info:

crc32: 5AD372EA
md5: 503b030633a980ed559054f8372b8d3a
name: 503B030633A980ED559054F8372B8D3A.mlw
sha1: e357b14f2ef782ab503b287f546e794a052bdc94
sha256: 0a9edaffd2bc7d187a83e41642551ce1f4d01da86f6ac1f6cc687aafd7cf9030
sha512: 8f57819a9f68940c35b9df5edeaa360b289a4675c3ace7ebad0b6d824c5bffc3f3034dece28445336b4720f68b9be66d250200607bf3083e27f0feb1c54e35c9
ssdeep: 6144:2KjYApd9ON7SSqbmC/iGJRwuEaceK3HpS07VVG/Hi1:TjYA5ON2Sq96GJRgacd7VUH
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: www.FreeBeeline.nm.ru
InternalName: www.FreeBeeline.nm.ru
FileVersion: 1.0.0.0
CompanyName: Free Beeline
LegalTrademarks: www.FreeBeeline.nm.ru
Comments: www.FreeBeeline.nm.ru
ProductName: www.FreeBeeline.nm.ru
ProductVersion: 1.0.0.0
FileDescription: www.FreeBeeline.nm.ru
OriginalFilename: www.FreeBeeline.nm.ru
Translation: 0x0419 0x04e3

Dialer.Generic.26528 also known as:

DrWebTrojan.DownLoad.22902
ALYacDialer.Generic.26528
CylanceUnsafe
ZillyaTool.CardGen.Win32.5
AlibabaRiskWare:Win32/CardGen.7a90d458
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
CyrenW32/Joke.QKKA-5747
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastFileRepMalware
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderDialer.Generic.26528
NANO-AntivirusRiskware.Win32.CardGen.dolar
MicroWorld-eScanDialer.Generic.26528
TencentWin32.Trojan-psw.Cardgen.Srxb
Ad-AwareDialer.Generic.26528
SophosGeneric PUA OD (PUA)
ComodoApplicUnsaf@#2rqk9t8tl7n2j
VIPRETrojan.Win32.Generic!BT
TrendMicroJOKEPROGRAMS_FREELINE
McAfee-GW-EditionGeneric PUP.g
FireEyeDialer.Generic.26528
EmsisoftDialer.Generic.26528 (B)
JiangminHoax.Freeline.c
AviraSPR/Hoax.Freeline.F
MicrosoftTrojan:Win32/Trafog!rts
AegisLabTrojan.Multi.Generic.4!c
ZoneAlarmHoax.Win32.CardGen.c
GDataDialer.Generic.26528
AhnLab-V3Unwanted/Win32.Freeline.C926071
McAfeeGeneric PUP.g
MAXmalware (ai score=100)
VBA32BScope.TrojanRansom.Blocker
PandaGeneric Malware
TrendMicro-HouseCallJOKEPROGRAMS_FREELINE
RisingHoax.CardGen!8.4CCA (CLOUD)
YandexTrojan.Freeline!W0w/VHmnDr4
IkarusDialer.Generic
MaxSecureTrojan.Malware.1728101.susgen
FortinetRiskware/CardGen
AVGFileRepMalware

How to remove Dialer.Generic.26528?

Dialer.Generic.26528 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment