Malware

Should I remove “GenPack:Generic.Malware.LMWV3g.9558C23D”?

Malware Removal

The GenPack:Generic.Malware.LMWV3g.9558C23D is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What GenPack:Generic.Malware.LMWV3g.9558C23D virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Executable file is packed/obfuscated with MPRESS
  • Authenticode signature is invalid

How to determine GenPack:Generic.Malware.LMWV3g.9558C23D?


File Info:

name: 2C5606E9B6E79EF86056.mlw
path: /opt/CAPEv2/storage/binaries/ba1c192b5f93309a5b1b26d4b00a42abdae5270efe1db9e4f7ba03ecd1708eb5
crc32: B8330254
md5: 2c5606e9b6e79ef860563b3666b4dd97
sha1: a22f45196741a3f2895e9e66aaef7e4a359d211c
sha256: ba1c192b5f93309a5b1b26d4b00a42abdae5270efe1db9e4f7ba03ecd1708eb5
sha512: 1b699b62c4b98d941e2b6021041be61fbe6d14dabfc194c6a77b2f07221fa110457384774bdc10c642e7c6f21b4e8ea0d59360760a97ba04185122f89bb81b61
ssdeep: 3072:vGfAUbd5CR4Up+Zoy8jV8Gv+PlRvDCHb7WIP:01b/Ubl+PfbCHb77
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T13BD30289FF279558FA8CC5B9D896DA272101FDBC0A37B017E254B9CE3C285883967713
sha3_384: f160d0615df92eabc96ba0ffed25d462047517763ee7d8a1dbb8893ffc998401ef4711c7ab2f4518ea4aee7e997acf6b
ep_bytes: 60e80000000058055a0b00008b3003f0
timestamp: 2007-01-12 10:04:58

Version Info:

Translation: 0x0409 0x04b0
Comments: Microsoft Corporation
CompanyName: File Folder
ProductName:
FileVersion: 1.00
ProductVersion: 1.00
InternalName: FILE FOLDER
OriginalFilename: FILE FOLDER.exe

GenPack:Generic.Malware.LMWV3g.9558C23D also known as:

BkavW32.AIDetect.malware2
tehtrisGeneric.Malware
DrWebTrojan.DownLoader6.64360
MicroWorld-eScanGenPack:Generic.Malware.LMWV3g.9558C23D
FireEyeGeneric.mg.2c5606e9b6e79ef8
ALYacGenPack:Generic.Malware.LMWV3g.9558C23D
CylanceUnsafe
ZillyaWorm.VB.Win32.63671
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 0049c30b1 )
K7AntiVirusTrojan ( 0049c30b1 )
BitDefenderThetaAI:Packer.FCF666E41D
CyrenW32/S-1342d390!Eldorado
SymantecW32.Lunalight@mm
Elasticmalicious (high confidence)
ESET-NOD32Win32/NoonLight.Y
APEXMalicious
TrendMicro-HouseCallWORM_MOONLIGHT.F
ClamAVWin.Worm.Moonlight-9775620-0
KasperskyEmail-Worm.Win32.VB.co
BitDefenderGenPack:Generic.Malware.LMWV3g.9558C23D
AvastWin32:Malware-gen
TencentMalware.Win32.Gencirc.10d0c243
Ad-AwareGenPack:Generic.Malware.LMWV3g.9558C23D
EmsisoftGenPack:Generic.Malware.LMWV3g.9558C23D (B)
ComodoTrojWare.Win32.Regrun.Q@1gs3xh
BaiduWin32.Worm.VB.a
VIPREGenPack:Generic.Malware.LMWV3g.9558C23D
TrendMicroWORM_MOONLIGHT.F
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.cc
Trapminemalicious.high.ml.score
SophosML/PE-A + W32/Bobandy-I
SentinelOneStatic AI – Malicious PE
GDataGenPack:Generic.Malware.LMWV3g.9558C23D
JiangminWorm/VB.a
GoogleDetected
AviraTR/Dropper.Gen
MAXmalware (ai score=80)
Antiy-AVLTrojan/Generic.ASMalwS.18C
ArcabitGenPack:Generic.Malware.LMWV3g.9558C23D
MicrosoftWorm:Win32/Lightmoon.H
CynetMalicious (score: 100)
AhnLab-V3Worm/Win.VB.R526135
McAfeeGenericRXAA-AA!2C5606E9B6E7
VBA32TScope.Trojan.VB
MalwarebytesMalware.AI.4192793956
RisingWorm.VBInjectEx!1.99E6 (CLASSIC)
YandexTrojan.GenAsa!O3bYNF95XJ4
IkarusTrojan.Win32.Patched
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/NoonLight.Z!worm
AVGWin32:Malware-gen
Cybereasonmalicious.9b6e79
PandaTrj/Genetic.gen

How to remove GenPack:Generic.Malware.LMWV3g.9558C23D?

GenPack:Generic.Malware.LMWV3g.9558C23D removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment