Malware

Mal/Generic-S + Mal/Behav-270 removal

Malware Removal

The Mal/Generic-S + Mal/Behav-270 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-S + Mal/Behav-270 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Checks for the presence of known devices from debuggers and forensic tools
  • Anomalous binary characteristics

How to determine Mal/Generic-S + Mal/Behav-270?


File Info:

name: 7361C7F53755FB27AE28.mlw
path: /opt/CAPEv2/storage/binaries/a07fbacb1f61a7ae252b3ade3af6316f4f02590791e79d2e3d86fd7141dbaa6d
crc32: EBB7008E
md5: 7361c7f53755fb27ae28742327050439
sha1: 016b697f9e8a07aa5a882ad32d9894d338e374cd
sha256: a07fbacb1f61a7ae252b3ade3af6316f4f02590791e79d2e3d86fd7141dbaa6d
sha512: fb8dc7455eb1d78e5257fa158ac018a0c6b8c307855df6fe125452e1c05d0d5d6dd9ad55d51342d6d438d936ac010417becc63c400a835a299282553b581cab8
ssdeep: 12288:6f1swgKELpp8yrJT3MQy98NjDDHF3Z4mxx0hwhSNbMOMaocLNc3Tmv8Cq:G1swgKqR1T3MQ1DrQmXuwoNIOM1NUhq
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E3E42356ABAEC406D57632BD88B3D3566330D6241AE48E6733F2D6331B3B661FD13112
sha3_384: 68d408e666ad87b56c5eed78edbda0e9cbd27cb37d817f45a102f4a6137495bbb7800db78e7faadae1468c99a02a1e5f
ep_bytes: 6801a04b00e801000000c3c35f0fabb4
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Mal/Generic-S + Mal/Behav-270 also known as:

MicroWorld-eScanGen:Heur.Zilix.1
FireEyeGeneric.mg.7361c7f53755fb27
McAfeeRDN/Generic.dx
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Black.d
BitDefenderGen:Heur.Zilix.1
Cybereasonmalicious.53755f
BitDefenderThetaGen:NN.ZexaF.34182.OOWaaGTToqdb
SymantecTrojan.Gen.MBT
ESET-NOD32Win32/Packed.ASProtect.AAB
CynetMalicious (score: 99)
KasperskyPacked.Win32.Black.d
AlibabaPacked:Win32/Black.9619f8cd
NANO-AntivirusTrojan.Win32.Black.bevzim
RisingTrojan.Win32.Generic.148F282A (C64:YzY0OkoK1zoR9sS0)
EmsisoftGen:Heur.Zilix.1 (B)
McAfee-GW-EditionBehavesLike.Win32.Generic.jc
SentinelOneStatic AI – Suspicious PE
SophosMal/Generic-S + Mal/Behav-270
APEXMalicious
JiangminBackdoor/Huigezi.2007.apjb
AviraTR/Black.wwdie
KingsoftWin32.Malware.Heur_Generic.B.(kcloud)
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Heur.Zilix.1
ALYacGen:Heur.Zilix.1
MAXmalware (ai score=80)
PandaTrj/CI.A
TencentWin32.Packed.Black.Agaz
IkarusTrojan.Win32.ASProtect
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/PossibleThreat
AVGWin32:Trojan-gen
AvastWin32:Trojan-gen

How to remove Mal/Generic-S + Mal/Behav-270?

Mal/Generic-S + Mal/Behav-270 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment