Malware

How to remove “Generic.Malware.SL!bg.957F4204”?

Malware Removal

The Generic.Malware.SL!bg.957F4204 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Malware.SL!bg.957F4204 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Uses Windows utilities for basic functionality
  • Sniffs keystrokes
  • A process was set to shut the system down when terminated
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Creates a copy of itself

How to determine Generic.Malware.SL!bg.957F4204?


File Info:

crc32: 36948FE1
md5: 3a3756c9fcb41f9b48a27ad43e15f5e6
name: eec5a60699342d11.exe
sha1: 85236285f35d496f36f32f63c0096e4c7805ff9a
sha256: c0ed0d5b0acb25fcd611576544a9e9bd7a5d45a80befce6a46671ba9b24afd39
sha512: eae7db81f13a482c18a90f8be4c3e3d10673d2a82ba711f038bea65d5ae530799473fce4e48412eb8de7799a7aa4f1dbbe7f7f420af29e29c7748418b2328436
ssdeep: 384:yZyH608dsbhKIyKXLL6w8Me7rgd9D9O5UE5QzwBlpJNakkjh/TzF7pWnIggreT0:AtxiwFK7LvOfvQO+1o+L
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

0: [No Data]

Generic.Malware.SL!bg.957F4204 also known as:

DrWebTrojan.DownLoader23.53497
MicroWorld-eScanGeneric.Malware.SL!bg.957F4204
FireEyeGeneric.mg.3a3756c9fcb41f9b
McAfeeBackDoor-FDPF!3A3756C9FCB4
CylanceUnsafe
ZillyaTrojan.Bladabindi.Win32.8896
SangforMalware
K7AntiVirusTrojan ( 700000121 )
BitDefenderGeneric.Malware.SL!bg.957F4204
K7GWTrojan ( 700000121 )
Cybereasonmalicious.9fcb41
TrendMicroBKDR_BLADABI.SMC
BitDefenderThetaGen:NN.ZemsilF.34136.cmW@aafEQrc
F-ProtW32/MSIL_Bladabindi.A.gen!Eldorado
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallBKDR_BLADABI.SMC
AvastWin32:BackDoor-AFW [Trj]
ClamAVWin.Trojan.Generic-6417450-0
GDataGeneric.Malware.SL!bg.957F4204
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojan:Win32/Starter.ali1001008
AegisLabTrojan.Win32.Generic.4!c
TencentMalware.Win32.Gencirc.11492129
Ad-AwareGeneric.Malware.SL!bg.957F4204
SophosTroj/Bladabi-DR
ComodoTrojWare.MSIL.Bladabindi.CC@7ebfqa
F-SecureTrojan.TR/Dropper.Gen7
VIPRETrojan.Win32.Generic!BT
Invinceaheuristic
SentinelOneDFI – Malicious PE
EmsisoftGeneric.Malware.SL!bg.957F4204 (B)
IkarusTrojan.MSIL.Bladabindi
CyrenW32/MSIL_Bladabindi.A.gen!Eldorado
JiangminTrojan.Generic.arrkp
WebrootW32.Gen.BT
AviraTR/Dropper.Gen7
Antiy-AVLTrojan/Win32.AGeneric
Endgamemalicious (high confidence)
ArcabitGeneric.Malware.SL!bg.957F4204
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftBackdoor:MSIL/Bladabindi
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/NjRAT04.Exp
Acronissuspicious
VBA32Trojan.Downloader
ALYacGeneric.Malware.SL!bg.957F4204
MAXmalware (ai score=85)
MalwarebytesBackdoor.Bladabindi
APEXMalicious
ESET-NOD32a variant of MSIL/Bladabindi.BB
RisingBackdoor.Njrat!1.C5D1 (CLOUD)
YandexTrojan.Agent!i7ZA/ektpbg
eGambitUnsafe.AI_Score_99%
FortinetMSIL/Bladabindi.AS!tr
AVGWin32:BackDoor-AFW [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Generic/HEUR/QVM03.0.B5DE.Malware.Gen

How to remove Generic.Malware.SL!bg.957F4204?

Generic.Malware.SL!bg.957F4204 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment