Malware

Generic.BrResMon.1.D306BC96 malicious file

Malware Removal

The Generic.BrResMon.1.D306BC96 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.BrResMon.1.D306BC96 virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Injection with CreateRemoteThread in a remote process
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Deletes its original binary from disk
  • Executed a process and injected code into it, probably while unpacking
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Creates a slightly modified copy of itself
  • Anomalous binary characteristics

How to determine Generic.BrResMon.1.D306BC96?


File Info:

crc32: 31886591
md5: 699d3210acf1c82e1fba3b4a1dda2ca4
name: 699D3210ACF1C82E1FBA3B4A1DDA2CA4.mlw
sha1: ccec02ad3ce6653f99042634c288885b7d7c4cce
sha256: 5aa9feffb73f8f48045973e85a34cc0e731c7b7df8f836fb7514b3ad7cf04c2c
sha512: 9721f85e38288757450160c7a126ae73a3d398add18608e5ec21256ae5ed0b249b2c5b2edc89c6a57b6bded5f6862f8cfceab47e6d31bb0d5eb10a8d6063a127
ssdeep: 6144:9qYpZmERolqE4nPjQTiAAcmumO2DOP6VylKv0ZUS/1WHv6T4HuY7GHKPnxsIH:UqQw1PzYyDBylKvQUS/oHvxh7PnOI
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0808 0x04b0

Generic.BrResMon.1.D306BC96 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053305e1 )
LionicTrojan.Win32.Gozi.7!c
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.24384
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Chapak.ZZ5
ALYacDeepScan:Generic.BrResMon.1.D306BC96
CylanceUnsafe
ZillyaTrojan.Gozi.Win32.155
SangforRansom.Win32.Gandcrab_2.se2
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 0053305e1 )
Cybereasonmalicious.0acf1c
CyrenW32/S-a8821d9e!Eldorado
SymantecPacked.Generic.525
ESET-NOD32a variant of Win32/Kryptik.HGIQ
ZonerTrojan.Win32.73087
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
KasperskyHEUR:Trojan.Win32.Zenpak.gen
BitDefenderDeepScan:Generic.BrResMon.1.D306BC96
NANO-AntivirusTrojan.Win32.Encoder.fcuntb
MicroWorld-eScanDeepScan:Generic.BrResMon.1.D306BC96
TencentMalware.Win32.Gencirc.10b44f2c
Ad-AwareDeepScan:Generic.BrResMon.1.D306BC96
SophosMal/Generic-S + Mal/GandCrab-B
ComodoTrojWare.Win32.Spy.Panda.V@7pesdt
BitDefenderThetaGen:NN.ZexaF.34170.zuW@ayVMvZfO
VIPRETrojan.Win32.Generic!BT
TrendMicroMal_HPGen-37b
McAfee-GW-EditionBehavesLike.Win32.Generic.gc
FireEyeGeneric.mg.699d3210acf1c82e
EmsisoftDeepScan:Generic.BrResMon.1.D306BC96 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Chapak.jh
AviraHEUR/AGEN.1121589
Antiy-AVLTrojan/Generic.ASMalwS.263A6F1
MicrosoftTrojan:Win32/GandCrypt.PVP!MTB
ArcabitDeepScan:Generic.BrResMon.1.D306BC96
SUPERAntiSpywareRansom.GandCrab/Variant
ZoneAlarmHEUR:Trojan.Win32.Zenpak.gen
GDataDeepScan:Generic.BrResMon.1.D306BC96
AhnLab-V3Trojan/Win32.RL_Magniber.R358536
Acronissuspicious
McAfeeTrojan-FPPS!699D3210ACF1
MAXmalware (ai score=99)
VBA32BScope.TrojanRansom.GandCrypt
MalwarebytesTrojan.MalPack
PandaTrj/Genetic.gen
TrendMicro-HouseCallMal_HPGen-37b
RisingTrojan.Kryptik!1.B3A9 (CLASSIC)
YandexTrojan.GenAsa!ho/zEObESkA
IkarusWorm.Win32.Phorpiex
MaxSecureRansomeware.CRAB.gen
FortinetW32/GenKryptik.CNAR!tr
AVGWin32:RansomX-gen [Ransom]
Paloaltogeneric.ml

How to remove Generic.BrResMon.1.D306BC96?

Generic.BrResMon.1.D306BC96 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment