Malware

Generic.BrResMon.1.21B6BF09 removal tips

Malware Removal

The Generic.BrResMon.1.21B6BF09 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.BrResMon.1.21B6BF09 virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Unconventionial language used in binary resources: Spanish (Guatemala)
  • The binary likely contains encrypted or compressed data.
  • Executed a process and injected code into it, probably while unpacking
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Installs itself for autorun at Windows startup
  • Checks the presence of disk drives in the registry, possibly for anti-virtualization
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.BrResMon.1.21B6BF09?


File Info:

crc32: FEF94E34
md5: 3c4713cacc013862a6c259134006ae3a
name: 3C4713CACC013862A6C259134006AE3A.mlw
sha1: de0d01c83f4b4cbd068346cb23dd2d047ac5e9aa
sha256: 3bc2b29fa9435d20648521b8469113b0fa86d1bda87307fa8b53e506a3dbb04c
sha512: 9859792ac0738f8e2356b7177076dc43e446ee5edec4fb2a2b051fb721db238a5f11a5aa03879a2183512ea4db57d8a0f8bdb74b0d31c4c8c7593caa1ed46ca2
ssdeep: 12288:S2kXmNit7g5lSwVaki2tG+BA9KHtEKQwEG:r/iturDYsKh
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.BrResMon.1.21B6BF09 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053305e1 )
LionicTrojan.Win32.Inject.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.24384
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Chapak.ZZ5
ALYacDeepScan:Generic.BrResMon.1.21B6BF09
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 00532b561 )
Cybereasonmalicious.acc013
CyrenW32/S-a155a775!Eldorado
SymantecPacked.Generic.525
ESET-NOD32a variant of Win32/Kryptik.GHCY
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
ClamAVWin.Packer.Crypter-6539596-1
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderDeepScan:Generic.BrResMon.1.21B6BF09
NANO-AntivirusTrojan.Win32.Coins.fcrznz
MicroWorld-eScanDeepScan:Generic.BrResMon.1.21B6BF09
TencentMalware.Win32.Gencirc.10b46d7c
Ad-AwareDeepScan:Generic.BrResMon.1.21B6BF09
SophosMal/Generic-R + Mal/GandCrab-B
ComodoTrojWare.Win32.Cloxer.AY@7o68fu
BitDefenderThetaGen:NN.ZexaF.34050.yyW@aO45zXH
VIPRETrojan.Win32.Generic!BT
TrendMicroMal_HPGen-37b
McAfee-GW-EditionBehavesLike.Win32.Generic.fc
FireEyeGeneric.mg.3c4713cacc013862
EmsisoftDeepScan:Generic.BrResMon.1.21B6BF09 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Inject.aoab
AviraHEUR/AGEN.1103318
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.26374B1
MicrosoftTrojan:Win32/GandCrab.KDS!MTB
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataDeepScan:Generic.BrResMon.1.21B6BF09
AhnLab-V3Win-Trojan/Gandcrab03.Exp
Acronissuspicious
McAfeeGenericRXFO-ON!3C4713CACC01
MAXmalware (ai score=99)
VBA32Malware-Cryptor.Limpopo
MalwarebytesMalware.AI.600159092
PandaTrj/Genetic.gen
TrendMicro-HouseCallMal_HPGen-37b
RisingTrojan.Kryptik!1.B289 (CLASSIC)
YandexTrojan.GenAsa!sW7ZE7xkEjM
IkarusTrojan.Win32.Gandcrab
FortinetW32/GenKryptik.CPYR!tr
AVGWin32:RansomX-gen [Ransom]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.GandCrab.HwoCEpsA

How to remove Generic.BrResMon.1.21B6BF09?

Generic.BrResMon.1.21B6BF09 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment