Malware

Generic.BrResMon.1.EAC65B96 removal tips

Malware Removal

The Generic.BrResMon.1.EAC65B96 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.BrResMon.1.EAC65B96 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Installs itself for autorun at Windows startup
  • Checks the CPU name from registry, possibly for anti-virtualization
  • Anomalous binary characteristics

Related domains:

ipv4bot.whatismyipaddress.com
dns1.soprodns.ru
nomoreransom.coin
nomoreransom.bit
dns2.soprodns.ru
gandcrab.bit

How to determine Generic.BrResMon.1.EAC65B96?


File Info:

crc32: 0E4DF156
md5: c52c21ce9025e8ba38c8bd6be2530d73
name: C52C21CE9025E8BA38C8BD6BE2530D73.mlw
sha1: d34bc87a6cbabc28da75c27e400e3a122a112e0a
sha256: 6a183bc64facb95e4d8a710b4ba010c64c2d0e81c907937f42afb6e297154033
sha512: 70bd093970e83b558b48621fe420dadead6b87d4fdd172ad3dde268ddf03f92cc815c2f344f83614a559fb71b3e2b0081aa1f71a2101a25fb0dd7a1a78d60e63
ssdeep: 6144:Scum1vshDH9Q2DdEe68X+wgURbhbI4A2wd57gw049T30j7Npi:S7mUhDH+0/68cUR5I4Dwdawf0nL
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.BrResMon.1.EAC65B96 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 003e58dd1 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.24602
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Chapak.ZZ5
ALYacDeepScan:Generic.BrResMon.1.EAC65B96
CylanceUnsafe
ZillyaTrojan.GandCrypt.Win32.74
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaRansom:Win32/Gandcrab.beefae64
K7GWTrojan ( 0056e9401 )
Cybereasonmalicious.e9025e
CyrenW32/S-c5d37cab!Eldorado
SymantecPacked.Generic.525
ESET-NOD32a variant of Win32/Kryptik.GDEU
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Packer.Crypter-6539596-1
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderDeepScan:Generic.BrResMon.1.EAC65B96
NANO-AntivirusTrojan.Win32.GandCrypt.eyazms
MicroWorld-eScanDeepScan:Generic.BrResMon.1.EAC65B96
TencentMalware.Win32.Gencirc.10b584f2
Ad-AwareDeepScan:Generic.BrResMon.1.EAC65B96
SophosML/PE-A + Mal/Kryptik-BT
ComodoTrojWare.Win32.Ransom.GandCrab.A@7jk3ar
F-SecureHeuristic.HEUR/AGEN.1117310
BitDefenderThetaGen:NN.ZexaF.34686.suW@ai2Of1oi
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_HPGANDCRAB.SMG2
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
FireEyeGeneric.mg.c52c21ce9025e8ba
EmsisoftDeepScan:Generic.BrResMon.1.EAC65B96 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Blocker.ife
AviraHEUR/AGEN.1117310
eGambitUnsafe.AI_Score_99%
MicrosoftRansom:Win32/Gandcrab.SF!MTB
ArcabitDeepScan:Generic.BrResMon.1.EAC65B96
AegisLabTrojan.Win32.GandCrypt.tpif
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataDeepScan:Generic.BrResMon.1.EAC65B96
TACHYONRansom/W32.GandCrab.305664
AhnLab-V3Win-Trojan/MalPe34.Suspicious.X2029
Acronissuspicious
McAfeePacked-FAG!C52C21CE9025
MAXmalware (ai score=99)
VBA32Trojan.Agentb
MalwarebytesTrojan.MalPack.GS
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom_HPGANDCRAB.SMG2
RisingMalware.Obscure/Heur!1.9E03 (CLOUD)
YandexTrojan.GandCrypt!W3ZAavYyGzo
IkarusTrojan-Dropper.Win32.Danabot
MaxSecureRansomeware.CRAB.gen
FortinetW32/Kryptik.GLKY!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Generic.BrResMon.1.EAC65B96?

Generic.BrResMon.1.EAC65B96 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment