Malware

How to remove “Mal/Generic-S + Troj/Agent-BGMT”?

Malware Removal

The Mal/Generic-S + Troj/Agent-BGMT is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-S + Troj/Agent-BGMT virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • Attempts to modify proxy settings

Related domains:

z.whorecord.xyz
a.tomx.xyz
finderout.com

How to determine Mal/Generic-S + Troj/Agent-BGMT?


File Info:

crc32: 15795190
md5: 1dc858e63cb36548a246d078ffdf99d3
name: 1DC858E63CB36548A246D078FFDF99D3.mlw
sha1: 783e48b94c8e76bb197487f02fe0c5980f0d8a00
sha256: e844577efbd9d78da8849997491807f1f9d3ae7d7f010363e2c25c6de2687eba
sha512: 24df76894b7415a2c77d8bb737ce114745626b7e730c9418a4a2885f65fd9511b69e936a418adadab7d620cf1e0f19b83d9773dd6e79bffdbfe1f16bbfb3011b
ssdeep: 12288:VLx2KpmgXvsBBElYrUql5jWCn+fqQkwKFTfLLoXJugKYh:VLxQgXvs/EqrUqH9VHVVLoXJux4
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

ProductVersion: 1.0.0.1
InternalName: HyperLinkDemo.exe
FileVersion: 1.0.0.1
OriginalFilename: HyperLinkDemo.exe
FileDescription: HyperLink Demonstration Executable.
Translation: 0x0409 0x04e4

Mal/Generic-S + Troj/Agent-BGMT also known as:

DrWebTrojan.DownLoad4.14248
MicroWorld-eScanGen:Variant.Ulise.171410
FireEyeGen:Variant.Zusy.367926
Qihoo-360Win32/Backdoor.Emotet.HgIASPEA
ALYacGen:Variant.Ulise.171410
AegisLabTrojan.Win32.Zenpak.4!c
SangforBackdoor.Win32.Bazarloader.mt
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Variant.Zusy.367926
K7GWRiskware ( 0040eff71 )
CyrenW32/Emotet.BBE.gen!Eldorado
SymantecTrojan Horse
APEXMalicious
AvastWin32:DangerousSig [Trj]
KasperskyHEUR:Trojan.Win32.Zenpak.gen
AlibabaBackdoor:Win32/Bazarloader.95d7a562
Ad-AwareGen:Variant.Zusy.367926
EmsisoftMalCert-S.DW (A)
ComodoMalware@#2g0jedr8bk01k
F-SecureTrojan.TR/AD.Emotet.wfhwa
TrendMicroBackdoor.Win32.BAZAR.AB
McAfee-GW-EditionArtemis!Trojan
SophosMal/Generic-S + Troj/Agent-BGMT
WebrootW32.Malware.Gen
AviraTR/AD.Emotet.wfhwa
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftBackdoor:Win32/Bazarloader
GridinsoftTrojan.Win32.Emotet.oa
ArcabitTrojan.Ulise.D29D92
ZoneAlarmHEUR:Trojan.Win32.Zenpak.gen
GDataWin32.Trojan.Kryptik.2DBBA4
CynetMalicious (score: 85)
AhnLab-V3Malware/Gen.Reputation.C4338342
McAfeeArtemis!1DC858E63CB3
MAXmalware (ai score=85)
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/CI.A
ESET-NOD32a variant of Win32/Kryptik.HJMG
TrendMicro-HouseCallBackdoor.Win32.BAZAR.AB
RisingBackdoor.BazarLoader!8.122C3 (TFE:5:bgvMGeklOGP)
IkarusBackdoor.Win32.BazarLoader
FortinetMalicious_Behavior.SB
AVGWin32:DangerousSig [Trj]
Paloaltogeneric.ml

How to remove Mal/Generic-S + Troj/Agent-BGMT?

Mal/Generic-S + Troj/Agent-BGMT removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment