Malware

What is “Generic.Malware.SFLB.C54EAFCF”?

Malware Removal

The Generic.Malware.SFLB.C54EAFCF is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Malware.SFLB.C54EAFCF virus can do?

  • Authenticode signature is invalid
  • CAPE detected the XWorm malware family
  • Binary file triggered YARA rule

How to determine Generic.Malware.SFLB.C54EAFCF?


File Info:

name: 6A3FA38E2B8DE107C9A1.mlw
path: /opt/CAPEv2/storage/binaries/4c22a26306c5e683b1a22086bafffe92fc70ab731995a2f2726fecf9cffa3d44
crc32: 4C40F2BB
md5: 6a3fa38e2b8de107c9a1049120e333a4
sha1: b8e05de72c34a911b54d238c946fd651b561934d
sha256: 4c22a26306c5e683b1a22086bafffe92fc70ab731995a2f2726fecf9cffa3d44
sha512: 74868e6ce5b33d6403913163480aa837ffafca06a7acaf9bacdeeec839cb8bca7abdfd35d809e9a1d954baa26037d1cd5ac5a31a8518a5b498844f226b26fb1d
ssdeep: 1536:Ynpq0H65dtnIZVINxxLcfQv6cabcgy3uz4fFT1UmvghYOzBuR5:YnV6VmwnIbcgy+z4tT1UmvFOzBu7
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14F739E2C7BDA4129E1FF6FF409F17217CA39F7235907964F24DA028A1A23A88CD516F5
sha3_384: 06a2b6e2577461f64ac8e6da85a12148481918b214eb1ff288bb8c7cb9b16034a9923ed7dcc00427cd7a97f56bbfd4f3
ep_bytes: ff250020400000000000000000000000
timestamp: 2024-04-20 18:49:49

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 1.0.0.0
InternalName: Chloe.exe
LegalCopyright:
OriginalFilename: Chloe.exe
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Generic.Malware.SFLB.C54EAFCF also known as:

BkavW32.AIDetectMalware.CS
AVGWin32:RATX-gen [Trj]
Elasticmalicious (high confidence)
MicroWorld-eScanDeepScan:Generic.Malware.SFLB.C54EAFCF
FireEyeGeneric.mg.6a3fa38e2b8de107
CAT-QuickHealWorm.GenericFC.S32598663
SkyhighBehavesLike.Win32.Trojan.lm
McAfeeTrojan-FVYT!6A3FA38E2B8D
Cylanceunsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 005aa5f01 )
K7AntiVirusTrojan ( 005aa5f01 )
ArcabitDeepScan:Generic.Malware.SFLB.C54EAFCF
BitDefenderThetaGen:NN.ZemsilF.36802.em0@a4Cwr@h
VirITTrojan.Win32.MSIL_Heur.B
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Agent.DWN
APEXMalicious
AvastWin32:RATX-gen [Trj]
ClamAVWin.Packed.njRAT-10002074-1
KasperskyHEUR:Backdoor.MSIL.XWorm.gen
BitDefenderDeepScan:Generic.Malware.SFLB.C54EAFCF
EmsisoftDeepScan:Generic.Malware.SFLB.C54EAFCF (B)
F-SecureTrojan.TR/Spy.Gen
DrWebBackDoor.BladabindiNET.30
VIPREDeepScan:Generic.Malware.SFLB.C54EAFCF
Trapminemalicious.high.ml.score
SophosTroj/RAT-FJ
WebrootW32.Malware.gen
AviraTR/Spy.Gen
MAXmalware (ai score=85)
Kingsoftmalware.kb.c.1000
MicrosoftTrojan:MSIL/AsyncRAT.R!MTB
ZoneAlarmHEUR:Backdoor.MSIL.XWorm.gen
GDataMSIL.Backdoor.XWormRAT.A
VaristW32/MSIL_Agent.BUD.gen!Eldorado
AhnLab-V3Backdoor/Win.AsyncRat.C5360693
VBA32Backdoor.MSIL.XWorm.gen
ALYacDeepScan:Generic.Malware.SFLB.C54EAFCF
MalwarebytesBackdoor.XWorm.Generic
PandaTrj/GdSda.A
RisingTrojan.AntiVM!1.CF63 (CLASSIC)
IkarusTrojan-Dropper.MSIL.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Conwise.RCE!tr
DeepInstinctMALICIOUS
alibabacloudRat:Win/AsyncRAT.Stub

How to remove Generic.Malware.SFLB.C54EAFCF?

Generic.Malware.SFLB.C54EAFCF removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment