Malware

Generic.Malware.SNmg.5C59D319 (file analysis)

Malware Removal

The Generic.Malware.SNmg.5C59D319 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Malware.SNmg.5C59D319 virus can do?

  • Executable code extraction
  • Installs itself for autorun at Windows startup
  • Anomalous binary characteristics

Related domains:

download.servegame.com
upload.servegame.com

How to determine Generic.Malware.SNmg.5C59D319?


File Info:

crc32: C0F340F1
md5: c0daf7b539b3d763846bc97734200b1e
name: C0DAF7B539B3D763846BC97734200B1E.mlw
sha1: 2ba7431d3a2e52f49a80c89d0fd53f3b0532ddbb
sha256: c090867d3c67bbab381ebb16c376a75999fb2e87abfef1cb1f86c0a9593ab1a2
sha512: fc1989b2f81281647a5c15d2b17e3a5ca12309e4930cf3490c504da30b8e7d187fe07f8e732007adfef164fa07a879e4ce4f8e1821c2d80893445ffbba495f1f
ssdeep: 3072:arOPQRxnWFnzBHv/xWFsg8WatRgHQbWPE5ac0sosmhpa+0wI1j:arCBHng5HayQJosmhpa+0wI1
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: bv189w653956
FileVersion: 1.00
CompanyName: Microsoft
ProductName: Microsoft
ProductVersion: 1.00
OriginalFilename: bv189w653956.exe

Generic.Malware.SNmg.5C59D319 also known as:

BkavW32.AIDetect.malware2
LionicWorm.Win32.VBNA.lnk6
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader5.20518
MicroWorld-eScanDeepScan:Generic.Malware.SNmg.5C59D319
CAT-QuickHealTrojan.VBCrypt.MF.1942
ALYacDeepScan:Generic.Malware.SNmg.5C59D319
MalwarebytesGeneric.Worm.Agent.DDS
ZillyaTrojan.Spy.Win32.670
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaRansom:Win32/Blocker.18ea4f42
K7GWNetWorm ( 700000151 )
K7AntiVirusNetWorm ( 700000151 )
ESET-NOD32a variant of Win32/Spy.VB.NNI
APEXMalicious
AvastWin32:Banker-IZK [Trj]
CynetMalicious (score: 100)
KasperskyTrojan-Ransom.Win32.Blocker.bljs
BitDefenderDeepScan:Generic.Malware.SNmg.5C59D319
NANO-AntivirusTrojan.Win32.VB.ebyhej
TencentWin32.Trojan.Blocker.Syhu
Ad-AwareDeepScan:Generic.Malware.SNmg.5C59D319
SophosML/PE-A + Mal/Agent-ADJ
ComodoMalware@#ccehpitf0t1z
BitDefenderThetaAI:Packer.68A038DC1C
VIPRETrojan.Win32.Generic!BT
FireEyeGeneric.mg.c0daf7b539b3d763
EmsisoftDeepScan:Generic.Malware.SNmg.5C59D319 (B)
SentinelOneStatic AI – Malicious PE
JiangminWorm/VBNA.hcgx
AviraTR/VB.Downloader.Gen
ZoneAlarmTrojan-Ransom.Win32.Blocker.bljs
TACHYONRansom/W32.VB-Blocker.172032
AhnLab-V3Worm/Win32.VBNA.C129227
McAfeeW32/Generic.worm!p2p.c
MAXmalware (ai score=100)
VBA32Hoax.Blocker
PandaTrj/CI.A
YandexTrojan.GenAsa!tAywIpgwl3w
IkarusP2P-Worm.Win32.BlackControl
FortinetW32/VBNA.BH!worm
AVGWin32:Banker-IZK [Trj]
Paloaltogeneric.ml

How to remove Generic.Malware.SNmg.5C59D319?

Generic.Malware.SNmg.5C59D319 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment