Malware

Generic.BrResMon.1.9E2B1C8F information

Malware Removal

The Generic.BrResMon.1.9E2B1C8F is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.BrResMon.1.9E2B1C8F virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Starts servers listening on 0.0.0.0:37304, 0.0.0.0:27301
  • A process created a hidden window
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Deletes its original binary from disk
  • Attempts to identify installed AV products by registry key
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
k.modakenchina.com
s.modakenchina.com

How to determine Generic.BrResMon.1.9E2B1C8F?


File Info:

crc32: 4CC18938
md5: 26f204b309184431df5ab19e186a7200
name: 26F204B309184431DF5AB19E186A7200.mlw
sha1: f16d90ab9df617180e382d13cadb4ec5afe0af55
sha256: 9ccf594ac49b26519a4246ee298f4da99f6325a8c4218e6c06365967e884d53e
sha512: 26b3050e6d8ddf8e89aa573023fc99f9c05e85918a5be0f702c6ea2b4a0cfb716bfa2b86434ce403bd4e2853094521af624f197957b23499288374c00eb23ab1
ssdeep: 3072:RhL9kJ1AG/tFOOMQVKHK3dUjlIOUSm1EZS3TXSr:XG1A8tF//3dUhm1EZS3er
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2017, ignomodoudeb
FileVersion: 10.1.10.11
ProductVersion: 10.1.10.11
Translation: 0x0809 0x04b0

Generic.BrResMon.1.9E2B1C8F also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00526cba1 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.24384
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Chapak.ZZ5
ALYacDeepScan:Generic.BrResMon.1.9E2B1C8F
CylanceUnsafe
ZillyaTrojan.NeutrinoPOS.Win32.105
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 00526cba1 )
Cybereasonmalicious.309184
CyrenW32/S-c5d37cab!Eldorado
SymantecPacked.Generic.525
ESET-NOD32a variant of Win32/Kryptik.GCZP
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
ClamAVWin.Trojan.Emotet-6451069-0
KasperskyHEUR:Trojan-Ransom.Win32.GandCrypt.gen
BitDefenderDeepScan:Generic.BrResMon.1.9E2B1C8F
NANO-AntivirusTrojan.Win32.Yakes.exynrl
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
MicroWorld-eScanDeepScan:Generic.BrResMon.1.9E2B1C8F
TencentWin32.Trojan.Generic.Htwc
Ad-AwareDeepScan:Generic.BrResMon.1.9E2B1C8F
SophosML/PE-A + Mal/GandCrab-B
ComodoTrojWare.Win32.NeutrinoPOS.C@7ise8z
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_HPGANDCRAB.SMG2
McAfee-GW-EditionBehavesLike.Win32.Dropper.ch
FireEyeGeneric.mg.26f204b309184431
EmsisoftDeepScan:Generic.BrResMon.1.9E2B1C8F (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Diple.bbxy
AviraHEUR/AGEN.1126869
eGambitUnsafe.AI_Score_62%
Antiy-AVLTrojan/Generic.ASMalwS.246DEC3
MicrosoftTrojan:Win32/Ursnif.KDS!MTB
ArcabitDeepScan:Generic.BrResMon.1.9E2B1C8F
ZoneAlarmHEUR:Trojan-Ransom.Win32.GandCrypt.gen
GDataDeepScan:Generic.BrResMon.1.9E2B1C8F
AhnLab-V3Win-Trojan/MalPe34.Suspicious.X2029
Acronissuspicious
McAfeeGenericRXEB-KP!26F204B30918
MAXmalware (ai score=99)
VBA32TrojanBanker.NeutrinoPOS
MalwarebytesTrojan.Bunitu
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom_HPGANDCRAB.SMG2
RisingMalware.Obscure/Heur!1.9E03 (CLOUD)
YandexTrojan.GandCrypt!rB7PfXp2qRk
IkarusTrojan.Crypt
MaxSecureRansomeware.CRAB.gen
FortinetW32/Kryptik.GLKY!tr
AVGWin32:MalwareX-gen [Trj]
Paloaltogeneric.ml

How to remove Generic.BrResMon.1.9E2B1C8F?

Generic.BrResMon.1.9E2B1C8F removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment