Malware

Mal/Generic-R + Troj/StartSer-B removal

Malware Removal

The Mal/Generic-R + Troj/StartSer-B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-R + Troj/StartSer-B virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial binary language: Russian
  • Unconventionial language used in binary resources: Russian
  • Anomalous binary characteristics

Related domains:

lamp.troublerifle.bid
light.representativeglass.bid

How to determine Mal/Generic-R + Troj/StartSer-B?


File Info:

crc32: 979538A9
md5: 0b7acf43ad912b46a6d05577f865d9e6
name: 0B7ACF43AD912B46A6D05577F865D9E6.mlw
sha1: e1b006b4a1f152000e42372dc100d1adcd8079f7
sha256: c6ca674a72028e257e6b84b51509cb8c2db41f75d37171f4f6bd7d6db4d9dd8d
sha512: b9263fb7d63762a0671040e7a90a6f25386258741af48d656667f690a2666c3ba808af498a7881b48370b31316321740b7d2de209b711162323dfbde2900ebac
ssdeep: 6144:5CI9crDeV7bu3BcfNHvyLZOJLSYP16ilGWJw+eSiSf3aUXg9tS3j2h/cIV5y1wh:IjqA3BZOJ3z1k0KUXotSz2pPm2dlKO
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2018
FileVersion: 1.0.0.1
CompanyName: TODO:
ProductName: TODO:
ProductVersion: 1.0.0.1
FileDescription: TODO:
Translation: 0x0419 0x04b0

Mal/Generic-R + Troj/StartSer-B also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00528e801 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CAT-QuickHealSWB.Prepscram.JK6
ALYacGen:Variant.Ransom.GandCrab.1787
CylanceUnsafe
ZillyaAdware.Generic.Win32.77312
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaTrojan:Win32/Kryptik.4cf1965d
K7GWTrojan ( 005267551 )
Cybereasonmalicious.3ad912
CyrenW32/S-ec8ab2eb!Eldorado
SymantecAdware.IstartSurf
ESET-NOD32a variant of Win32/Kryptik.GCWT
APEXMalicious
AvastFileRepMalware
Kasperskynot-a-virus:HEUR:AdWare.Win32.Generic
BitDefenderGen:Variant.Ransom.GandCrab.1787
NANO-AntivirusRiskware.Win32.Kryptik.eyeuft
MicroWorld-eScanGen:Variant.Ransom.GandCrab.1787
TencentWin32.Adware.Generic.Gvq
Ad-AwareGen:Variant.Ransom.GandCrab.1787
SophosMal/Generic-R + Troj/StartSer-B
ComodoApplication.Win32.IStartSurf.BS@7lng48
BitDefenderThetaGen:NN.ZexaF.34058.pz0@aembskfk
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.tt
FireEyeGeneric.mg.0b7acf43ad912b46
EmsisoftGen:Variant.Ransom.GandCrab.1787 (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.Generic.mdax
AviraHEUR/AGEN.1103309
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.24648DC
MicrosoftTrojan:Win32/Occamy.C
ArcabitTrojan.Ransom.GandCrab.D6FB
SUPERAntiSpywareRansom.GandCrab/Variant
GDataGen:Variant.Ransom.GandCrab.1787
AhnLab-V3PUP/Win32.IStartSurf.R220101
Acronissuspicious
McAfeePacked-ZA!0B7ACF43AD91
MAXmalware (ai score=85)
VBA32BScope.AdWare.StartSurf
MalwarebytesAdware.IStartSurf
PandaTrj/Genetic.gen
RisingTrojan.Generic@ML.100 (RDML:oJVrf9OHA0rKA5rcmPygWQ)
YandexTrojan.GenAsa!FWPhcEJUJ/g
IkarusTrojan.Kryptik
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.FXGV!tr
AVGFileRepMalware
Paloaltogeneric.ml
Qihoo-360Win32/Adware.Generic.HwoCEpsA

How to remove Mal/Generic-R + Troj/StartSer-B?

Mal/Generic-R + Troj/StartSer-B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment