Malware

What is “Generic.Malware.S!dld!.49E3E0F8”?

Malware Removal

The Generic.Malware.S!dld!.49E3E0F8 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Malware.S!dld!.49E3E0F8 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs
  • Installs WinPCAP

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Malware.S!dld!.49E3E0F8?


File Info:

crc32: 7648C21B
md5: 0b56d1f06f950912dd67ccbe3c1b2b6a
name: 0B56D1F06F950912DD67CCBE3C1B2B6A.mlw
sha1: 79e17360674562186c165cbdd1a677a9d66bf4b0
sha256: ddac77aa96ebfe978a7f34c5ede4b4ba50168d5a25d3c74c1aa544241d850f71
sha512: a402153305f2397236adb1384b84bbb3980b7599827e31a44bfff78ab72a928d85dff0736ee11896218780a0ff9b3c64bba7371a506065a279e22deffb7bbded
ssdeep: 192:4LOfZrHjx9qZASwHaVvyPSce8oMDBSOMzNOl6fPMQXKJYrg:xZrHL3SDVvy28oMDBSOM5OcMQaJYrg
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: x7248x6743x6240x6709 (C) 2013
InternalName: Down
FileVersion: 1, 0, 0, 1
CompanyName:
LegalTrademarks:
ProductName: Down x5e94x7528x7a0bx5e8f
ProductVersion: 1, 0, 0, 1
FileDescription: Down Microsoft x57fax7840x7c7bx5e94x7528x7a0bx5e8f
OriginalFilename: Down.EXE
Translation: 0x0804 0x04b0

Generic.Malware.S!dld!.49E3E0F8 also known as:

K7AntiVirusTrojan-Downloader ( 0053eec91 )
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacGeneric.Malware.S!dld!.49E3E0F8
CylanceUnsafe
ZillyaDownloader.Agent.Win32.369682
SangforSuspicious.Win32.Save.a
AlibabaTrojanDownloader:Win32/Generic.36ea8f9f
K7GWTrojan-Downloader ( 0053eec91 )
Cybereasonmalicious.06f950
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/TrojanDownloader.Agent.AAJ
APEXMalicious
AvastFileRepMalware
BitDefenderGeneric.Malware.S!dld!.49E3E0F8
NANO-AntivirusTrojan.Win32.Ric.ixjqsv
MicroWorld-eScanGeneric.Malware.S!dld!.49E3E0F8
TencentWin32.Trojan-downloader.Agent.Gbu
Ad-AwareGeneric.Malware.S!dld!.49E3E0F8
SophosMal/Generic-S
ComodoMalware@#33pdk07wlau3y
BitDefenderThetaGen:NN.ZexaF.34170.amKfaazVI2cb
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Backdoor.lh
FireEyeGeneric.mg.0b56d1f06f950912
EmsisoftGeneric.Malware.S!dld!.49E3E0F8 (B)
SentinelOneStatic AI – Malicious PE
WebrootTrojan.Dropper.Gen
AviraTR/Dldr.Agent.anpho
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.7C0438
KingsoftWin32.Hack.Delf.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGeneric.Malware.S!dld!.49E3E0F8
AhnLab-V3Malware/Win32.Generic.C2760393
McAfeeArtemis!0B56D1F06F95
MAXmalware (ai score=100)
VBA32TrojanDropper.Mudrop
PandaTrj/GdSda.A
YandexTrojan.GenAsa!8rcGngZZsD0
IkarusTrojan-Downloader.Win32.Agent
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Generic.Malware.S!dld!.49E3E0F8?

Generic.Malware.S!dld!.49E3E0F8 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment