Malware

Dropped:Generic.Malware.SFg.4AD01BEB (file analysis)

Malware Removal

The Dropped:Generic.Malware.SFg.4AD01BEB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Dropped:Generic.Malware.SFg.4AD01BEB virus can do?

  • Attempts to connect to a dead IP:Port (2 unique times)
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Attempts to remove evidence of file being downloaded from the Internet
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Likely virus infection of existing system binary
  • Operates on local firewall’s policies and settings
  • Creates a copy of itself
  • Attempts to disable UAC
  • Attempts to disable Windows Defender
  • Attempts to modify or disable Security Center warnings
  • Anomalous binary characteristics

Related domains:

mfkpzwgfwt.com
nozaorfmvcl.com
ebnayuejuvzya.com
bbazcbvwutlibc.com
bmtmjdnqtnomtp.com
uvavhykmywdsewuekcr.com
qcwvtxfrw.com
wzllmivd.com
kndbgappcnhtolgrnihn.com
fxjmlsizovtpxqb.com
ybydqmli.com
hxdulrhnoyv.com
uzyrasdqepanmdcyw.com
yqxakoxq.com
ykxkqujdaukjllboyck.com
oabiumolijcoccj.com
icamclynaezzibmkrurm.com
rtzjwqxikcw.com
acsnwmsedneaqabcga.com
zjnjbixounfyyxddoaz.com
iuuclspzzezlkkyykn.com
qqsxqflc.com
ydormoyylrpjnj.com
jhqnjyeewzdjgyjydzgi.com
ofahpcnay.com
awdwhjiqwmhvtx.com
dpczjcgazyvfe.com
offispphfgcqtazyf.com
akogtlnkmjjmp.com
ifufnamreriw.com

How to determine Dropped:Generic.Malware.SFg.4AD01BEB?


File Info:

crc32: A11B73E6
md5: e0cbdfb53a39057f4003c8beae886a30
name: E0CBDFB53A39057F4003C8BEAE886A30.mlw
sha1: 8568d8cae37c269f1da890fc4f05a01590eabcd1
sha256: 9e381ea0dad504b3aaedf8d563d63e407577c44f99d2574b19098da1bd1f4e45
sha512: 31a101f9a001b9494ac47e0e97042c85521a9886a2ebfb424812d5a54a1b90560ed8d3132c2700a1048984748c2bf3662115cb5e6de35feede2b52171a2dd0c8
ssdeep: 1536:t78jC/l7pvAan3ZcVGHxIsnXiYDC7pzzQ:t7H/l7pOGxxnOzQ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Dropped:Generic.Malware.SFg.4AD01BEB also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.283
CynetMalicious (score: 100)
ALYacDropped:Generic.Malware.SFg.4AD01BEB
CylanceUnsafe
ZillyaTrojan.Blocker.Win32.19717
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (D)
AlibabaRansom:Win32/Blocker.b6296e21
Cybereasonmalicious.53a390
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Filecoder.BH
APEXMalicious
AvastWin32:Dircrypt-C [Trj]
KasperskyTrojan-Ransom.Win32.Blocker.cgqz
BitDefenderDropped:Generic.Malware.SFg.4AD01BEB
NANO-AntivirusTrojan.Win32.Blocker.ctunmu
MicroWorld-eScanDropped:Generic.Malware.SFg.4AD01BEB
TencentWin32.Trojan.Blocker.Ajvf
Ad-AwareDropped:Generic.Malware.SFg.4AD01BEB
SophosML/PE-A + Troj/Ransom-AFW
ComodoMalware@#ryi8hveer6d5
BitDefenderThetaGen:NN.ZexaF.34690.eqW@ae@pNnm
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_RANSOM.JKE
McAfee-GW-EditionBehavesLike.Win32.Dropper.lm
FireEyeGeneric.mg.e0cbdfb53a39057f
EmsisoftDropped:Generic.Malware.SFg.4AD01BEB (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan/Blocker.opz
AviraTR/Spy.Gen
eGambitGeneric.Malware
MicrosoftRansom:Win32/Dircrypt.C
ArcabitGeneric.Malware.SFg.4AD01BEB
AegisLabTrojan.Win32.Cntr.kYRu
GDataDropped:Generic.Malware.SFg.4AD01BEB
AhnLab-V3Trojan/Win32.Blocker.R95052
McAfeeRDN/Ransom.ge
MAXmalware (ai score=100)
MalwarebytesMachineLearning/Anomalous.100%
PandaGeneric Malware
TrendMicro-HouseCallTROJ_RANSOM.JKE
RisingTrojan.Win32.Filecoder.o (CLOUD)
YandexTrojan.Blocker!p/ozed2dhBs
IkarusTrojan.Win32.Dircrypt
FortinetW32/Blocker.CGQZ!tr
AVGWin32:Dircrypt-C [Trj]
Paloaltogeneric.ml

How to remove Dropped:Generic.Malware.SFg.4AD01BEB?

Dropped:Generic.Malware.SFg.4AD01BEB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment