Spy

What is “Mal/Generic-R + W32/SennaSpy”?

Malware Removal

The Mal/Generic-R + W32/SennaSpy is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-R + W32/SennaSpy virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Mal/Generic-R + W32/SennaSpy?


File Info:

name: 3FC6DE79A0487EB95E47.mlw
path: /opt/CAPEv2/storage/binaries/15d109ea1139f99bae1f5f505819d46c019cdee1df6d89ff11df174f08c01ec1
crc32: B398ECB7
md5: 3fc6de79a0487eb95e4709ca2b6efbff
sha1: ba76d904a317af30a15b2f69a93cbee17ce37fc8
sha256: 15d109ea1139f99bae1f5f505819d46c019cdee1df6d89ff11df174f08c01ec1
sha512: 53abe10a529c993a9728911d6eb987b46e73545c36d65a8c6adccd007ed613d053e28c716578dccefcf9e0ddb99e2e795acd3acf29a7bdf524c6afd6c4562487
ssdeep: 768:6wv4s7UUpOvj8u4Mf4MMRt4MtsqzSbozJeg5TDtgCRkSI/R+ouqgxH:6wvvoqO4uP87nt5ntxk4out
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T137434B0FBAC64422C585847141E34A564A3AFC211FB9EDC37B982E4F1E712D1993B38B
sha3_384: d4ebae141160e4acfbb9695875f4e8ff96235982ec1a02f99e5058a781cc463b002f00a72cf23cd65575085ea00346a8
ep_bytes: 558bec6aff6800d14000687499400064
timestamp: 2014-12-03 14:24:43

Version Info:

0: [No Data]

Mal/Generic-R + W32/SennaSpy also known as:

BkavW32.FamVT.RelocationResur.PE
tehtrisGeneric.Malware
DrWebWin32.Senna.5
MicroWorld-eScanWin32.Resur.B
FireEyeGeneric.mg.3fc6de79a0487eb9
CAT-QuickHealW32.Resur
ALYacWin32.Resur.B
MalwarebytesMalware.AI.2415964734
Sangfor[ARMADILLO V1.71]
K7AntiVirusVirus ( 0040f51e1 )
BitDefenderWin32.Resur.B
K7GWVirus ( 0040f51e1 )
Cybereasonmalicious.9a0487
BitDefenderThetaAI:FileInfector.9694FB900D
CyrenW32/Resurrect.B
SymantecW32.Resure.38400
Elasticmalicious (high confidence)
ESET-NOD32Win32/Resur.B
APEXMalicious
ClamAVWin.Virus.Resur-7001272-0
KasperskyVirus.Win32.Resur.e
NANO-AntivirusVirus.Win32.Resur.ccfj
TencentVirus.Win32.Resur.gef
Ad-AwareWin32.Resur.B
EmsisoftWin32.Resur.B (B)
ComodoVirus.Win32.Resur.a@4xmlyr
BaiduWin32.Virus.Resur.a
ZillyaVirus.Resur.Win32.1
TrendMicroPE_RESUR.B
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.qt
SophosMal/Generic-R + W32/SennaSpy
IkarusVirus.Win32.Resur
JiangminWin32/Resur.b
AviraW32/Resur.b
MAXmalware (ai score=89)
MicrosoftVirus:Win32/Resur.A!epo
GDataWin32.Resur.B
CynetMalicious (score: 100)
AhnLab-V3Win32/Resur.X983
McAfeeW32/Resur.b
VBA32Virus.Win32.Resur.f
CylanceUnsafe
PandaW32/Resur.B
TrendMicro-HouseCallPE_RESUR.B
RisingVirus.Resur!1.D2CF (CLASSIC)
YandexWin32.Resur.F
MaxSecureVirus.W32.Resur.B
FortinetW32/Resurrect.B
AVGWin32:Resurrection
AvastWin32:Resurrection

How to remove Mal/Generic-R + W32/SennaSpy?

Mal/Generic-R + W32/SennaSpy removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment