Malware

Mal/Generic-S + Mal/Cerber-AM removal guide

Malware Removal

The Mal/Generic-S + Mal/Cerber-AM is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-S + Mal/Cerber-AM virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • A process created a hidden window
  • Uses Windows utilities for basic functionality
  • Installs itself for autorun at Windows startup
  • Attempts to identify installed AV products by registry key
  • Anomalous binary characteristics

How to determine Mal/Generic-S + Mal/Cerber-AM?


File Info:

crc32: 86505539
md5: 1e7c6b8f69aec10cd21d68d3d6c4dce4
name: 1E7C6B8F69AEC10CD21D68D3D6C4DCE4.mlw
sha1: aac2752fbb6bcba28da0d28a2a2cb8159c3d1303
sha256: 584038b935edf503189519b49247fb50f5914d097ea7b249f5dc2dde858d9392
sha512: 998b20d466db13cf2ab7baf0482c00bd1c034bc036956694163cad054539dd03f243e95bf588b223095d2a1e346ef8a9def9b06c4a47587592e5b1217dacef43
ssdeep: 1536:COdNMN5yg3PsNi9GH43qatbBoEAqLxhFwDVfB:CjJd9GReV7xnwDVfB
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: TeamViewer GmbH
InternalName: tv_loader
FileVersion: 7.0.12979.0
CompanyName: TeamViewer GmbH
ProductName: TeamViewer
ProductVersion: 7.0
FileDescription: Helper process for TeamViewer performance optimization and QuickConnect
OriginalFilename: tv_w32.exe
Translation: 0x0000 0x04b0

Mal/Generic-S + Mal/Cerber-AM also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005416a11 )
LionicTrojan.Win32.Generic.mDuT
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
CAT-QuickHealTrojan.Generic
ALYacGen:Heur.Mint.Jamg.1
CylanceUnsafe
ZillyaTrojan.NetStream.Win32.290
SangforTrojan.Win32.Generic.ky
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaTrojan:Win32/Bunitu.ali1000105
K7GWTrojan ( 005416a11 )
Cybereasonmalicious.f69aec
CyrenW32/Trojan.BUF.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GTKI
APEXMalicious
AvastWin32:DangerousSig [Trj]
ClamAVWin.Dropper.Bunitu-7641474-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Heur.Mint.Jamg.1
NANO-AntivirusTrojan.Win32.Kryptik.flhxrv
MicroWorld-eScanGen:Heur.Mint.Jamg.1
TencentMalware.Win32.Gencirc.10b4f8b4
Ad-AwareGen:Heur.Mint.Jamg.1
SophosMal/Generic-S + Mal/Cerber-AM
ComodoTrojWare.Win32.TrojanProxy.Bunitu.JL@80mh7b
BitDefenderThetaGen:NN.ZexaF.34050.tq1@aexXA!t
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom.Win32.SHADE.SMB.hp
McAfee-GW-EditionTrickbot-FRDP!1E7C6B8F69AE
FireEyeGeneric.mg.1e7c6b8f69aec10c
EmsisoftGen:Heur.Mint.Jamg.1 (B)
JiangminTrojan.Generic.egfqz
AviraTR/Crypt.XPACK.bicv
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.29F3081
MicrosoftTrojan:Win32/GandCrab.KDV!MTB
ArcabitTrojan.Mint.Jamg.1
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Heur.Mint.Jamg.1
AhnLab-V3Trojan/Win32.Kryptik.C2903035
McAfeeTrickbot-FRDP!1E7C6B8F69AE
MAXmalware (ai score=83)
VBA32BScope.Trojan.NetStream
MalwarebytesMalware.AI.3912797216
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom.Win32.SHADE.SMB.hp
RisingTrojan.Kryptik!1.B56C (CLASSIC)
YandexTrojan.GenAsa!Ba7Ckh/H2Kg
IkarusTrojan-Ransom.Crypted007
FortinetW32/Kryptik.GLWT!tr
AVGWin32:DangerousSig [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.GandCrab.HwoCEpsA

How to remove Mal/Generic-S + Mal/Cerber-AM?

Mal/Generic-S + Mal/Cerber-AM removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment