Malware

What is “Mal/Generic-R + Mal/Agent-AUG”?

Malware Removal

The Mal/Generic-R + Mal/Agent-AUG is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-R + Mal/Agent-AUG virus can do?

  • Reads data out of its own binary image
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Mal/Generic-R + Mal/Agent-AUG?


File Info:

crc32: 4340B469
md5: 4c28391ef41403f93285771961609ce3
name: 4C28391EF41403F93285771961609CE3.mlw
sha1: 6d1140d0d3ec164eb29111e312c5a281357f64be
sha256: 261b7f48609da42a3554659468c9be73f47bb8512880836487deb8256b019513
sha512: 7badcb321583d46b0f68789631e7dbaafdabd1c90b3187598ca5ec03c0efa72d8e607d1ef910591177da32773cd16f0521eac09714521d8d9c750b59358b2b9a
ssdeep: 1536:YQpQ5EP0ijnRTXJ5kxtAGhoWdoL4HsQdixKQVG0hSmZfHhDW0/FRT4uUwD70PiAv:YQIURTXJ5k4WdgQyHzLdUwDwPPyW
type: PE32 executable (GUI) Intel 80386, for MS Windows, InstallShield self-extracting archive

Version Info:

LegalCopyright: (C)
ProductName:
FileVersion:
FileDescription: Producer shd
Translation: 0x0804 0x04e4

Mal/Generic-R + Mal/Agent-AUG also known as:

K7AntiVirusTrojan ( 004b8c661 )
LionicRiskware.Win32.Malicious.1!c
Elasticmalicious (high confidence)
DrWebAdware.Searcher.1222
ZillyaDropper.Agent.Win32.442859
SangforAdware.Win32.Agent.gen
AlibabaTrojanDropper:Win32/Generic.7b28db70
K7GWTrojan ( 004b8c661 )
Cybereasonmalicious.0d3ec1
BaiduNSIS.Trojan-Dropper.Agent.c
CyrenW32/Dropper.DS.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32a variant of NSIS/TrojanDropper.Agent.BT
APEXMalicious
AvastWin32:Adware-gen [Adw]
NANO-AntivirusRiskware.Nsis.Searcher.dtckjz
ViRobotTrojan.Win32.Z.Searcher.107832
TencentWin32.Trojan.Dropper.Pdcq
SophosMal/Generic-R + Mal/Agent-AUG
ComodoMalware@#21wqsmt96s556
McAfee-GW-EditionBehavesLike.Win32.AdwareDotDo.cc
EmsisoftAdware.Dropper (A)
SentinelOneStatic AI – Malicious PE
MicrosoftTrojan:Win32/Wacatac.B!ml
McAfeeArtemis!4C28391EF414
VBA32Adware.Searcher
MalwarebytesTrojan.ChinAd
TrendMicro-HouseCallTROJ_GEN.R002H0CK221
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Mal/Generic-R + Mal/Agent-AUG?

Mal/Generic-R + Mal/Agent-AUG removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment