Malware

Generik.TSABRC (file analysis)

Malware Removal

The Generik.TSABRC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.TSABRC virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generik.TSABRC?


File Info:

crc32: 1F2E3B4E
md5: 842c3c8b62e4ed67ec529ab08ee87c4a
name: kb-auto-win-update.exe
sha1: a026cb6932b6d8995e6815c56968e47796db4fd4
sha256: 408b95eaa2997cf448ac803a6ba988b7cbb149baab9a46e7b67ef4c4df4fe711
sha512: c774249bc27e2ffe7901dbab0546bcb39dcfb13a3a36a2e3bae09856978c56a6b61bf9707e6d39d2fb8b9b24fbc57b86622a5926860637c88d866125ea297ed8
ssdeep: 6144:VBI8Ck/UL/Q2p01/4zd2hlWKTktvzJ9fUEC:Vu8Vc02WJ6ghIKTUrJ9fUJ
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 HOME 2008
Assembly Version: 1.0.2.0
InternalName: Notepad.NET.exe
FileVersion: 1.0.2.0
CompanyName: HOME
LegalTrademarks:
Comments: Text File Editor
ProductName: Notepad.NET
ProductVersion: 1.0.2.0
FileDescription: Notepad.NET
OriginalFilename: Notepad.NET.exe

Generik.TSABRC also known as:

McAfeeRDN/Generic.grp
SangforMalware
Cybereasonmalicious.932b6d
TrendMicroTROJ_GEN.R011C0PF620
BitDefenderThetaGen:NN.ZemsilF.34126.xq0@ayjQIae
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Trojan-gen
GDataWin32.Trojan.Agent.1UV6H9
KasperskyHEUR:Backdoor.MSIL.Crysan.gen
AlibabaBackdoor:MSIL/Crysan.f7a2a387
SophosMal/Generic-S
F-SecureBackdoor.BDS/Redcap.stlob
McAfee-GW-EditionRDN/Generic.grp
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.842c3c8b62e4ed67
SentinelOneDFI – Malicious PE
AviraBDS/Redcap.stlob
Endgamemalicious (high confidence)
ZoneAlarmHEUR:Backdoor.MSIL.Crysan.gen
MicrosoftTrojan:Win32/Wacatac.C!ml
ESET-NOD32a variant of Generik.TSABRC
TrendMicro-HouseCallTROJ_GEN.R011C0PF620
IkarusTrojan.SuspectCRC
eGambitUnsafe.AI_Score_64%
FortinetPossibleThreat
AVGWin32:Trojan-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Generic/Backdoor.c00

How to remove Generik.TSABRC?

Generik.TSABRC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment