Malware

What is “Generic.Malware.Ydr.7B09EE28”?

Malware Removal

The Generic.Malware.Ydr.7B09EE28 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Malware.Ydr.7B09EE28 virus can do?

  • Uses Windows utilities for basic functionality
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • A ping command was executed with the -n argument possibly to delay analysis
  • Attempts to modify browser security settings
  • Deletes executed files from disk
  • Uses suspicious command line tools or Windows utilities

How to determine Generic.Malware.Ydr.7B09EE28?


File Info:

name: 61EDB1E2564F5AB2EDEE.mlw
path: /opt/CAPEv2/storage/binaries/00907d3c0d4abcbfa758755734ad90b3d8a8dc9f22080646019066f2692bbf5a
crc32: AC3CCF78
md5: 61edb1e2564f5ab2edee6770db9446d8
sha1: 711c4b6dcd2a069e27ebb436b4c369a2a0cc545f
sha256: 00907d3c0d4abcbfa758755734ad90b3d8a8dc9f22080646019066f2692bbf5a
sha512: abaeab22b1d6b127e04248e5025ab55325838431a928d78c339d11dc35f49e486bb06451508e4e7a50265fa4334c710e36ab56094e6494628b691557f6ef780f
ssdeep: 384:rbCEXMMADQIrUeNFwx9E5xtT6fkCMst8AdxIiv4dK8y8KG8szTO4Am7UnwtzwG+y:31NAUsbxtT6sFst/3IrdlLUwJ84EPMnX
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1A0B2D052D9AA8922D38F113F698FF7394D50620FE6B48B5272EC302B0C657D4AC3E576
sha3_384: e9cb57c268d1d5992dcdc4b79b5826a060d19197ddaf86d2615fd2200ee14dba3e69f07c2ee754a17ded5306aeaa31a1
ep_bytes: 60be15a040008dbeeb6fffff5789e58d
timestamp: 2009-02-07 06:33:02

Version Info:

0: [No Data]

Generic.Malware.Ydr.7B09EE28 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanGeneric.Malware.Ydr.7B09EE28
SkyhighBehavesLike.Win32.BadFile.mc
ALYacGeneric.Malware.Ydr.7B09EE28
Cylanceunsafe
SangforTrojan.Win32.Agent.Voxh
AlibabaTrojan:Win32/Generic.663ecf3c
ArcabitGeneric.Malware.Ydr.7B09EE28
SymantecML.Attribute.HighConfidence
APEXMalicious
TrendMicro-HouseCallTROJ_GEN.R002H0CLP23
AvastWin32:Malware-gen
BitDefenderGeneric.Malware.Ydr.7B09EE28
EmsisoftGeneric.Malware.Ydr.7B09EE28 (B)
VIPREGeneric.Malware.Ydr.7B09EE28
FireEyeGeneric.Malware.Ydr.7B09EE28
Paloaltogeneric.ml
JiangminTrojanDropper.BAT.Dmenu.k
WebrootW32.Malware.Gen
MAXmalware (ai score=89)
Antiy-AVLGrayWare/Win32.Wacapew
MicrosoftPWS:Win32/Zbot!ml
GDataGeneric.Malware.Ydr.7B09EE28
CynetMalicious (score: 100)
McAfeeArtemis!61EDB1E2564F
VBA32Trojan.Ymacco
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/Chgt.AD
RisingTrojan.Ymacco!8.11BE1 (CLOUD)
MaxSecureTrojan.Malware.8986446.susgen
FortinetW32/PossibleThreat
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Generic.Malware.Ydr.7B09EE28?

Generic.Malware.Ydr.7B09EE28 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment