Malware

About “Mal/Generic-R + Troj/DwnLdr-YLF” infection

Malware Removal

The Mal/Generic-R + Troj/DwnLdr-YLF is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-R + Troj/DwnLdr-YLF virus can do?

    Related domains:

    z.whorecord.xyz
    a.tomx.xyz

    How to determine Mal/Generic-R + Troj/DwnLdr-YLF?

    
    

    File Info:

    crc32: 991EECC0
    md5: 3e6644e40b501d9606fcd7801fc24dcf
    name: 3E6644E40B501D9606FCD7801FC24DCF.mlw
    sha1: 57b82688b96b38c3f193199946ff311da47f4759
    sha256: b2996c7df5911d402e3bc49191f41f12ac3360a639150f64050dd781c7dd033b
    sha512: e0ec0ec42f1a716447615fa2043e325773241e2b0be425e9eea609e92718839df740ee05c0f05d281ed8a92a62a884d4cd6aef186e2c47e46b6d2218b8c0b589
    ssdeep: 24576:rcyRM2BgWPzDdWy6WtWrnngnnnKnanxNO3:BhXdWy6WErnngnnnKnanzs
    type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

    Version Info:

    Translation: 0x0000 0x04b0
    LegalCopyright: Copyright 2011 BlueStack Systems, Inc. All Rights Reserved.
    Assembly Version: 4.32.57.2556
    InternalName: Bluestacks.exe
    FileVersion: 4.32.57.2556
    CompanyName: BlueStack Systems, Inc.
    ProductName: BlueStacks
    ProductVersion: 4.32.57.2556
    FileDescription: BlueStacks 4
    OriginalFilename: Bluestacks.exe

    Mal/Generic-R + Troj/DwnLdr-YLF also known as:

    Elasticmalicious (high confidence)
    MicroWorld-eScanGen:Trojan.Downloader.Er1@aWutx@m
    McAfeeGenericRXIG-TN!3E6644E40B50
    CylanceUnsafe
    AegisLabTrojan.Win32.PornoBlocker.tqLZ
    K7AntiVirusVirus ( 0055485e1 )
    BitDefenderGen:Trojan.Downloader.Er1@aWutx@m
    K7GWTrojan-Downloader ( 005537eb1 )
    Cybereasonmalicious.40b501
    CyrenW32/Agent_Troj.J.gen!Eldorado
    SymantecInfostealer
    APEXMalicious
    KasperskyTrojan.Win32.Patched.rw
    AlibabaTrojanDownloader:Win32/DwnLdr.767b349c
    NANO-AntivirusVirus.Win32.Gen.ccmw
    RisingWorm.Phorpiex!1.BB1C (CLASSIC)
    Ad-AwareGen:Trojan.Downloader.Er1@aWutx@m
    EmsisoftGen:Trojan.Downloader.Er1@aWutx@m (B)
    F-SecureMalware.W32/Infector.Gen
    DrWebTrojan.DownLoader33.36265
    TrendMicroTrojanSpy.Win32.FICKERSTEALER.SMTHA.hp
    McAfee-GW-EditionBehavesLike.Win32.Generic.tm
    FireEyeGeneric.mg.3e6644e40b501d96
    SophosMal/Generic-R + Troj/DwnLdr-YLF
    SentinelOneStatic AI – Malicious PE
    JiangminTrojanDownloader.Generic.bdga
    MaxSecureTrojan.Malware.121218.susgen
    AviraW32/Infector.Gen
    MAXmalware (ai score=100)
    Antiy-AVLTrojan[Downloader]/Win32.Agent.a
    MicrosoftTrojanDownloader:Win32/SmallAgent!atmn
    ArcabitTrojan.Downloader.E4CFB8
    ZoneAlarmTrojan.Win32.Patched.rw
    GDataGen:Trojan.Downloader.Er1@aWutx@m
    CynetMalicious (score: 85)
    AhnLab-V3Malware/Win32.RL_Generic.R282625
    BitDefenderThetaGen:NN.ZemsilF.34804.Er1@aWutx@m
    ALYacGen:Trojan.Downloader.Er1@aWutx@m
    TACHYONWorm/W32.ZeroDownloader
    MalwarebytesMalware.Heuristic.1003
    ZonerTrojan.Win32.87633
    ESET-NOD32Win32/TrojanDownloader.Agent.EQH
    TrendMicro-HouseCallTrojanSpy.Win32.FICKERSTEALER.SMTHA.hp
    TencentVirus.Win32.Patched.kh
    IkarusTrojan-Downloader.Win32.Agent
    FortinetW32/Agent.EQH!tr.dldr
    PandaTrj/CI.A
    CrowdStrikewin/malicious_confidence_60% (W)
    Qihoo-360HEUR/QVM19.1.BD15.Malware.Gen

    How to remove Mal/Generic-R + Troj/DwnLdr-YLF?

    Mal/Generic-R + Troj/DwnLdr-YLF removal tool
    • Download and install GridinSoft Anti-Malware.
    • Open GridinSoft Anti-Malware and perform a “Standard scan“.
    • Move to quarantine” all items.
    • Open “Tools” tab – Press “Reset Browser Settings“.
    • Select proper browser and options – Click “Reset”.
    • Restart your computer.

    About the author

    Paul Valéry

    I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

    Leave a Comment