Malware

How to remove “Generic.BrResMon.1.7C41C5A9”?

Malware Removal

The Generic.BrResMon.1.7C41C5A9 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.BrResMon.1.7C41C5A9 virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Mimics the system’s user agent string for its own requests
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Executed a process and injected code into it, probably while unpacking
  • Installs itself for autorun at Windows startup
  • Attempts to modify proxy settings
  • Creates a copy of itself
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
bon.aungercote.org

How to determine Generic.BrResMon.1.7C41C5A9?


File Info:

crc32: 5EE8745A
md5: f1174c29ea43eb27d2c3744e5fba6ef0
name: F1174C29EA43EB27D2C3744E5FBA6EF0.mlw
sha1: 94648db946d9b07d3cee875550795a4e12887a77
sha256: ceda6114b38e57ffb7e6048b72a62fa9abde2e8664ae8f4236c63bed9c7bdd8b
sha512: 6d1b2899b7919649b723f1b51215c17cbf6f1c187118cc50230297eb82ece58a3c478304c1a3569136bd5390f6a02d6d3bf350fc3a1c80bb9e3b2280c3be63af
ssdeep: 6144:qG1A8tFvClyAm9E2q0bbEJmFRabTGS1EZS3er:T1A8tFaatDb0mu3GsEZZr
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2017, ignomodoudeb
FileVersion: 10.1.10.11
ProductVersion: 10.1.10.11
Translation: 0x0809 0x04b0

Generic.BrResMon.1.7C41C5A9 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00526cba1 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.24384
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Chapak.ZZ5
ALYacDeepScan:Generic.BrResMon.1.7C41C5A9
CylanceUnsafe
ZillyaTrojan.Generic.Win32.349160
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:Win32/Ursnif.a8137869
K7GWTrojan ( 00526cba1 )
Cybereasonmalicious.9ea43e
CyrenW32/S-c5d37cab!Eldorado
ESET-NOD32a variant of Win32/Kryptik.GCZP
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
ClamAVWin.Trojan.Emotet-6451332-0
KasperskyHEUR:Trojan-Ransom.Win32.GandCrypt.gen
BitDefenderDeepScan:Generic.BrResMon.1.7C41C5A9
NANO-AntivirusTrojan.Win32.Yakes.exynrl
MicroWorld-eScanDeepScan:Generic.BrResMon.1.7C41C5A9
TencentWin32.Trojan.Generic.Dyzf
Ad-AwareDeepScan:Generic.BrResMon.1.7C41C5A9
SophosMal/Generic-R + Mal/GandCrab-B
ComodoTrojWare.Win32.NeutrinoPOS.C@7ise8z
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_HPGANDCRAB.SMG2
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
FireEyeGeneric.mg.f1174c29ea43eb27
EmsisoftDeepScan:Generic.BrResMon.1.7C41C5A9 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Diple.bbxy
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1126869
Antiy-AVLTrojan/Generic.ASMalwS.246DEC3
MicrosoftTrojan:Win32/Ursnif.KDS!MTB
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
GDataDeepScan:Generic.BrResMon.1.7C41C5A9
AhnLab-V3Win-Trojan/MalPe34.Suspicious.X2029
Acronissuspicious
McAfeeGenericRXEB-KP!F1174C29EA43
MAXmalware (ai score=99)
VBA32TrojanBanker.NeutrinoPOS
MalwarebytesTrojan.Bunitu
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom_HPGANDCRAB.SMG2
RisingMalware.Obscure/Heur!1.A89E (CLASSIC)
IkarusTrojan.Crypt
MaxSecureRansomeware.CRAB.gen
FortinetW32/Kryptik.GLKY!tr
AVGWin32:MalwareX-gen [Trj]
Paloaltogeneric.ml

How to remove Generic.BrResMon.1.7C41C5A9?

Generic.BrResMon.1.7C41C5A9 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment