Malware

Should I remove “Generic.Malware.SYd!dld!.DE115901”?

Malware Removal

The Generic.Malware.SYd!dld!.DE115901 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Malware.SYd!dld!.DE115901 virus can do?

  • A process attempted to delay the analysis task.
  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • Performs some HTTP requests
  • Detects the presence of Wine emulator via function name
  • Detects Sandboxie through the presence of a library
  • Detects SunBelt Sandbox through the presence of a library
  • Attempts to remove evidence of file being downloaded from the Internet
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Likely virus infection of existing system binary
  • Attempts to modify proxy settings
  • Operates on local firewall’s policies and settings
  • Creates a copy of itself
  • Attempts to disable System Restore
  • Attempts to modify or disable Security Center warnings
  • Anomalous binary characteristics

Related domains:

sroghosfuoehfoaefua.ru
soghsorhosruuosrfha.ru
eizfgziaeaizgdeaifa.ru
buabcoueaboufaefofa.ru
iazefzaebdaezfizara.ru
awiziazgdizagwdwaia.ru
azidbazediagzeagiaa.ru
ohafogeiauoahadehfa.ru
aizefabdzizezezezra.ru
aebizabizeziizazera.ru
iazezgruaroarouadfa.ru
buaebnnnsnsnsnsufja.ru
oauendnnnnnvnhshhra.ru
mnbnvjdjsisidifueua.ru
oauufeofahfueuueuea.ru
pspspspckjuuuufufua.ru
auauauauaaauaaudaga.ru
pspspspgkurueuduuda.ru
soufgoueuueueufhfna.ru
dpddlrivhzdhsuvuhea.ru
uauueueunddjvgsnsia.ru
sususuhfbtehszfgura.ru
paeiguueiugzgjususa.ru
brfudgzbisfiuefzgsa.ru
oosouegafuaodeuadga.ru
sroghosfuoehfoaefub.su
soghsorhosruuosrfhb.su
eizfgziaeaizgdeaifb.su
buabcoueaboufaefofb.su
iazefzaebdaezfizarb.su
awiziazgdizagwdwaib.su
azidbazediagzeagiab.su
ohafogeiauoahadehfb.su
aizefabdzizezezezrb.su
aebizabizeziizazerb.su
iazezgruaroarouadfb.su
buaebnnnsnsnsnsufjb.su
oauendnnnnnvnhshhrb.su
mnbnvjdjsisidifueub.su
oauufeofahfueuueueb.su
pspspspckjuuuufufub.su
auauauauaaauaaudagb.su
pspspspgkurueuduudb.su
soufgoueuueueufhfnb.su
dpddlrivhzdhsuvuheb.su
uauueueunddjvgsnsib.su
sususuhfbtehszfgurb.su
paeiguueiugzgjususb.su
brfudgzbisfiuefzgsb.su
oosouegafuaodeuadgb.su
sroghosfuoehfoaefuc.in
soghsorhosruuosrfhc.in
eizfgziaeaizgdeaifc.in
buabcoueaboufaefofc.in
iazefzaebdaezfizarc.in
awiziazgdizagwdwaic.in
azidbazediagzeagiac.in
ohafogeiauoahadehfc.in
aizefabdzizezezezrc.in
aebizabizeziizazerc.in
iazezgruaroarouadfc.in
buaebnnnsnsnsnsufjc.in
oauendnnnnnvnhshhrc.in
mnbnvjdjsisidifueuc.in
oauufeofahfueuueuec.in
pspspspckjuuuufufuc.in
auauauauaaauaaudagc.in
pspspspgkurueuduudc.in
soufgoueuueueufhfnc.in
dpddlrivhzdhsuvuhec.in
uauueueunddjvgsnsic.in
sususuhfbtehszfgurc.in
paeiguueiugzgjususc.in
brfudgzbisfiuefzgsc.in
sroghosfuoehfoaefud.to
soghsorhosruuosrfhd.to
eizfgziaeaizgdeaifd.to
buabcoueaboufaefofd.to
iazefzaebdaezfizard.to
awiziazgdizagwdwaid.to
azidbazediagzeagiad.to
ohafogeiauoahadehfd.to
aizefabdzizezezezrd.to
aebizabizeziizazerd.to
iazezgruaroarouadfd.to
buaebnnnsnsnsnsufjd.to
oauendnnnnnvnhshhrd.to
mnbnvjdjsisidifueud.to
oauufeofahfueuueued.to
pspspspckjuuuufufud.to
auauauauaaauaaudagd.to
pspspspgkurueuduudd.to
soufgoueuueueufhfnd.to
dpddlrivhzdhsuvuhed.to
uauueueunddjvgsnsid.to
sususuhfbtehszfgurd.to
paeiguueiugzgjususd.to
brfudgzbisfiuefzgsd.to
oosouegafuaodeuadgd.to
sroghosfuoehfoaefue.biz
soghsorhosruuosrfhe.biz
eizfgziaeaizgdeaife.biz
buabcoueaboufaefofe.biz

How to determine Generic.Malware.SYd!dld!.DE115901?


File Info:

crc32: 4DE67BF9
md5: f94cf644fb1ed9c9c002b9f69a6ddff1
name: F94CF644FB1ED9C9C002B9F69A6DDFF1.mlw
sha1: b48233fa5dc1606cc14c52c0e4c6cb2d8857a71f
sha256: aa5d7e9f4619f737994e03d93e63858624feca4c4fd9549270d49de32ecf747d
sha512: cc1889c701f3498906cf4e06ec7884dd0538246859beaccd796e3044c8a266b9dcbc2064688f1a05b461137650df4cd077288736aab12a2e4de848d5985a4bf4
ssdeep: 768:L1Eyj7cz429zjKJ3FPGAAOEKhKWGV0UqBBqU:L1Eyj7ck2xjyRGAAJKkFlU
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Malware.SYd!dld!.DE115901 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00532c871 )
Elasticmalicious (high confidence)
DrWebWin32.HLLW.Autoruner2.46653
CynetMalicious (score: 100)
CAT-QuickHealTrojan.GenericPMF.S4827510
ALYacGeneric.Malware.SYd!dld!.DE115901
CylanceUnsafe
ZillyaWorm.Phorpiex.Win32.534
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/GrandCrab.0cbfdf59
K7GWTrojan ( 00532c871 )
Cybereasonmalicious.4fb1ed
CyrenW32/Phorpiex.J.gen!Eldorado
SymantecTrojan Horse
ESET-NOD32a variant of Win32/Phorpiex.AC
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Malware.Syddld-7059368-0
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGeneric.Malware.SYd!dld!.DE115901
NANO-AntivirusTrojan.Win32.Phorpiex.fhejxq
MicroWorld-eScanGeneric.Malware.SYd!dld!.DE115901
Ad-AwareGeneric.Malware.SYd!dld!.DE115901
SophosML/PE-A + Mal/Phorpiex-A
ComodoWorm.Win32.Phorpiex.JK@80uijx
BitDefenderThetaGen:NN.ZexaF.34738.cuW@ay1icNki
VIPRETrojan.Win32.Generic!BT
TrendMicroMal_DLDER
McAfee-GW-EditionBehavesLike.Win32.RansomGandcrab.nm
FireEyeGeneric.mg.f94cf644fb1ed9c9
EmsisoftGeneric.Malware.SYd!dld!.DE115901 (B)
SentinelOneStatic AI – Malicious PE
JiangminWorm.Generic.elc
AviraHEUR/AGEN.1102548
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.27EF545
MicrosoftRansom:Win32/GrandCrab.SA!MSR
ArcabitGeneric.Malware.SYd!dld!.DED1C4BD
AegisLabWorm.Win32.Generic.o!c
ZoneAlarmHEUR:Worm.Win32.Generic
GDataGeneric.Malware.SYd!dld!.DE115901
AhnLab-V3Malware/Win32.Dlder.C2675989
McAfeeGenericRXHX-KE!F94CF644FB1E
MAXmalware (ai score=100)
VBA32BScope.Trojan.Zonidel
MalwarebytesTrojan.TLDR
PandaTrj/GdSda.A
TrendMicro-HouseCallMal_DLDER
RisingWorm.Phorpiex!1.B6EF (CLASSIC)
IkarusWorm.Win32.Phorpiex
FortinetW32/Phorpiex.A!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Generic.Malware.SYd!dld!.DE115901?

Generic.Malware.SYd!dld!.DE115901 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment