Malware

How to remove “Generic.Malware.SLcWg.E920F434”?

Malware Removal

The Generic.Malware.SLcWg.E920F434 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Malware.SLcWg.E920F434 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • A process attempted to delay the analysis task.
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
yckz.5453.top
www.taobao.com
ocsp.globalsign.com
ocsp2.globalsign.com

How to determine Generic.Malware.SLcWg.E920F434?


File Info:

crc32: 78ABFD19
md5: c21032960e82014f3519747b4ef8f550
name: C21032960E82014F3519747B4EF8F550.mlw
sha1: b08d5cfc5c028d4257ad692409bf81116031f85c
sha256: a09687a3c41c0153597964e50e18f8fa0001733955a9cbc98631194b8d113527
sha512: b7b254abeedd3c43ce2a3c27e8f3ac9f531fdc9186af43377e048ebe0c8970e0a5cf3762d6ed577423e50686faa8baed0886f3f05180435aa321e0b78db81db2
ssdeep: 3072:UkJMSO5gR9Y1eA2Ogw8kYpAEYLyb+8cnyo77daUFnftQu:zJMbgRWeTRw8kYpAVmbS1d5
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x7248x6743x6240x6709 (C) 2007
InternalName: x6587x4ef6x4fddx9669x7bb1
FileVersion: 1, 0, 0, 1
CompanyName:
PrivateBuild:
LegalTrademarks:
Comments:
ProductName: x6587x4ef6x4fddx9669x7bb1 x5e94x7528x7a0bx5e8f
SpecialBuild:
ProductVersion: 1, 0, 0, 1
FileDescription: x6587x4ef6x4fddx9669x7bb1 Microsoft x57fax7840x7c7bx5e94x7528x7a0bx5e8f
OriginalFilename: x6587x4ef6x4fddx9669x7bb1.EXE
Translation: 0x0804 0x04b0

Generic.Malware.SLcWg.E920F434 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Siggen13.46508
CynetMalicious (score: 100)
ALYacDeepScan:Generic.Malware.SLcWg.E920F434
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.3011495
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
Cybereasonmalicious.60e820
CyrenW32/Kryptik.DTV.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HCAH
APEXMalicious
AvastWin32:Trojan-gen
KasperskyVHO:Backdoor.Win32.Farfli.gen
BitDefenderDeepScan:Generic.Malware.SLcWg.E920F434
MicroWorld-eScanDeepScan:Generic.Malware.SLcWg.E920F434
TencentMalware.Win32.Gencirc.10ce5615
Ad-AwareDeepScan:Generic.Malware.SLcWg.E920F434
SophosMal/Generic-R
BitDefenderThetaAI:Packer.9F5AF64B1F
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R005C0DG521
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.c21032960e82014f
EmsisoftDeepScan:Generic.Malware.SLcWg.E920F434 (B)
SentinelOneStatic AI – Malicious PE
JiangminHeur:TrojanDropper.TDSS
AviraHEUR/AGEN.1142751
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.3238A46
MicrosoftBackdoor:Win32/Zegost.DB
ArcabitDeepScan:Generic.Malware.SLcWg.E920F434
ZoneAlarmHEUR:Backdoor.Win32.Generic
GDataDeepScan:Generic.Malware.SLcWg.E920F434
AhnLab-V3Dropper/Win32.OnlineGameHack.C103331
Acronissuspicious
McAfeeArtemis!C21032960E82
MAXmalware (ai score=82)
VBA32BScope.Trojan.Damaged
MalwarebytesMalware.AI.3720025047
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R005C0DG521
RisingTrojan.Generic@ML.95 (RDML:ype+vd6853BI2FzAOPEowg)
YandexTrojan.GenAsa!CIx3vZ0/Evc
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/PossibleThreat
AVGWin32:Trojan-gen

How to remove Generic.Malware.SLcWg.E920F434?

Generic.Malware.SLcWg.E920F434 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment