Malware

Mal/Generic-S + Troj/AutoG-JV removal instruction

Malware Removal

The Mal/Generic-S + Troj/AutoG-JV is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-S + Troj/AutoG-JV virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Executable file is packed/obfuscated with MPRESS
  • Authenticode signature is invalid

How to determine Mal/Generic-S + Troj/AutoG-JV?


File Info:

name: 881CBA149E5B5A5A9E97.mlw
path: /opt/CAPEv2/storage/binaries/40141b04f402d0f8bff10a8308a50a5974d88410bc68cf6aef49d0512ee20643
crc32: C86D7CB6
md5: 881cba149e5b5a5a9e97d603af0c13de
sha1: 54a3c1ee35cac68dd35cffeced61e1b3232ba63c
sha256: 40141b04f402d0f8bff10a8308a50a5974d88410bc68cf6aef49d0512ee20643
sha512: 6c096bd4b49c046e7b47d33867a72e7e9e20355637a8dd4e1eba64b1d867b5046e56fcaf70edc2eb89b66d6d2a82e451dcb8497bd0e33c9c17b1b8aa8a1b2ffe
ssdeep: 12288:wqawIN37uwL/wFuwPGsdrbgzuml3307B6rkavhj3hjwDLZBRa1eNNmE0g6rTaBE6:iR7uu/bcddrgNUtdaBNSrTaroEQknw
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14825229AF852B391C909123B1B55637F38F2AD6F11705DC80EB178EA7DF1B1898C817A
sha3_384: ac99bf74362396986d3c560be5898fba0f0e0fa8c47d4aa0ce0e5987822b47af792100787a881010579137cc44c8f65e
ep_bytes: 60e80000000058055a0b00008b3003f0
timestamp: 2018-09-22 14:46:39

Version Info:

FileDescription:
FileVersion: 1.1.30.00
InternalName:
LegalCopyright:
OriginalFilename:
ProductName:
ProductVersion: 1.1.30.00
Translation: 0x0409 0x04b0

Mal/Generic-S + Troj/AutoG-JV also known as:

LionicTrojan.Win32.Generic.4!c
ClamAVWin.Ransomware.Generic-9843054-0
SophosMal/Generic-S + Troj/AutoG-JV
McAfee-GW-EditionBehavesLike.Win32.SoftPulse.tc
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
AhnLab-V3Malware/Gen.Generic.C2719154
McAfeeArtemis!881CBA149E5B
VBA32BScope.Trojan.Tiggre
MalwarebytesMalware.Heuristic.1003
APEXMalicious
RisingMalware.Heuristic!ET#92% (RDMK:cmRtazp67Qdme3RxW6funBZiyM14)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen

How to remove Mal/Generic-S + Troj/AutoG-JV?

Mal/Generic-S + Troj/AutoG-JV removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment