Malware

Dropped:Generic.Bat.Bomb.A.20759AE0 removal

Malware Removal

The Dropped:Generic.Bat.Bomb.A.20759AE0 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Dropped:Generic.Bat.Bomb.A.20759AE0 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality
  • Attempts to repeatedly call a single API many times in order to delay analysis time

How to determine Dropped:Generic.Bat.Bomb.A.20759AE0?


File Info:

name: 43F2ED18FB62B4130BDD.mlw
path: /opt/CAPEv2/storage/binaries/127d4f8d640777601a8b68af16c1ee3eeb250e8a351a5765d2b35cbc20a46d87
crc32: 3C591B54
md5: 43f2ed18fb62b4130bdddfe81ea07462
sha1: b194c0dd8ff6de912461eaec27b0b8270b6f9340
sha256: 127d4f8d640777601a8b68af16c1ee3eeb250e8a351a5765d2b35cbc20a46d87
sha512: aeb6b5eea1339fce35614a86a204120fb018004e22923a5621f723ab5c7d6f258bc25e246961280509681c29cfe070cf3a8ae8389faeaab520cc3a4754499afc
ssdeep: 1536:D7fbN3eEDhDPA/pICdUkbBtW7upvaLU0bI5taxKo0IOlnToIfDwBOv:f7DhdC6kzWypvaQ0FxyNTBfDH
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1DF936C41F3E202F7EAF2053100A6722F973663389764E8DBC75C2D529913AD5A63D3E9
sha3_384: d86dac26220b4188b837dd461ade206612c1ef3442b6e781151b8e9b0413b7a73b7165f2f183fb18cf458c3c7047cf72
ep_bytes: 68ac00000068000000006868804100e8
timestamp: 2019-07-30 08:52:45

Version Info:

0: [No Data]

Dropped:Generic.Bat.Bomb.A.20759AE0 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Encoder.trrL
MicroWorld-eScanDropped:Generic.Bat.Bomb.A.20759AE0
FireEyeGeneric.mg.43f2ed18fb62b413
CAT-QuickHealTrojan.FuerboosPMF.S17157152
McAfeeArtemis!43F2ED18FB62
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005015ae1 )
AlibabaTrojan:BAT/Folders.46f48cdf
K7GWTrojan ( 005015ae1 )
Cybereasonmalicious.d8ff6d
CyrenW32/Trojan.KFOA-1700
SymantecML.Attribute.HighConfidence
ESET-NOD32BAT/BadJoke.BZ
KasperskyTrojan.BAT.Folders.g
BitDefenderDropped:Generic.Bat.Bomb.A.20759AE0
AvastOther:Malware-gen [Trj]
TencentBat.Trojan.Folders.Pepu
EmsisoftDropped:Generic.Bat.Bomb.A.20759AE0 (B)
VIPREBAT.BadJoke (not malicious)
TrendMicroTROJ_GEN.R03FC0WJC21
McAfee-GW-EditionBehavesLike.Win32.Generic.mh
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
Antiy-AVLTrojan/Generic.ASMalwS.2B9E7F9
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ViRobotTrojan.Win32.Z.Badjoke.91136
ZoneAlarmUDS:Trojan.BAT.Folders.g
GDataWin32.Trojan.PSE.YXY4X0
CynetMalicious (score: 100)
VBA32Trojan.BAT.Folders
ALYacDropped:Generic.Bat.Bomb.A.20759AE0
MAXmalware (ai score=88)
MalwarebytesTrojan.Crypt
TrendMicro-HouseCallTROJ_GEN.R03FC0WJC21
RisingTrojan.Folders!8.FB8 (CLOUD)
IkarusTrojan.BAT.BadJoke
MaxSecureTrojan.Malware.7164915.susgen
FortinetBAT/BadJoke.BZ!tr
AVGOther:Malware-gen [Trj]
PandaTrj/CI.A

How to remove Dropped:Generic.Bat.Bomb.A.20759AE0?

Dropped:Generic.Bat.Bomb.A.20759AE0 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment