Malware

Mal/Generic-S + Troj/CeeInj-M information

Malware Removal

The Mal/Generic-S + Troj/CeeInj-M is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-S + Troj/CeeInj-M virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Dynamic (imported) function loading detected
  • Creates RWX memory
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Behavioural detection: Injection (Process Hollowing)
  • Executed a process and injected code into it, probably while unpacking
  • Behavioural detection: Injection (inter-process)

How to determine Mal/Generic-S + Troj/CeeInj-M?


File Info:

name: DE5FC5CADB81A9FC5589.mlw
path: /opt/CAPEv2/storage/binaries/1fbaf865391b24752810624ff5a6899ab7e93f645b54adfe9ea4aaae86d515ad
crc32: 71365FDD
md5: de5fc5cadb81a9fc55891403ab138ebe
sha1: de0fd9cc622d5de533403adf26e3a0536c9219ec
sha256: 1fbaf865391b24752810624ff5a6899ab7e93f645b54adfe9ea4aaae86d515ad
sha512: 3c564f99a7ef1bd00934d4666a3f5e1bfc0990972966e83108a76b6164e48c3bb7197a9e752b49d60d240cfb9a3cfb53f3bf3fd87d2fa23586abb7a9cce4adb1
ssdeep: 3072:U7JO3SdkTd+lp+rQNkaIbtdmYx9nXU29cj9j6g:2EB+leOG6kXlO9eg
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T175B301D4A2EA1055E37787BA86A6EBEB28CF7FF10F4ABB3459D00C0A5C022D05935717
sha3_384: deae418c64eb5057f44e31d2fa462cfc1bfec23ef9cf65908ca940262cf1317779b49eb053cb32dbbeaa99b33dad5433
ep_bytes: 558bec81ec0401000057c685fcfeffff
timestamp: 2011-01-20 05:54:21

Version Info:

CompanyName: Adobe Systems, Inc.
FileDescription: Adobe? Flash? Player Installer/Uninstaller 10.1 r53
FileVersion: 10,1,53,64
InternalName: Adobe? Flash? Player Installer/Uninstaller 10.1
LegalCopyright: Copyright ? 1996-2010 Adobe, Inc.
LegalTrademarks: Adobe? Flash? Player
OriginalFilename: FlashUtil.exe
ProductName: Flash? Player Installer/Uninstaller
ProductVersion: 10,1,53,64
Translation: 0x0409 0x04b0

Mal/Generic-S + Troj/CeeInj-M also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
DrWebTrojan.DownLoad2.36100
MicroWorld-eScanTrojan.GenericKDZ.74269
FireEyeGeneric.mg.de5fc5cadb81a9fc
CAT-QuickHealTrojan.MauvaiseRI.S5243672
ALYacTrojan.GenericKDZ.74269
MalwarebytesBackdoor.Simbot
ZillyaTrojan.InjectGen.Win32.5
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 002331771 )
AlibabaMalware:Win32/km_24823e.None
K7GWTrojan ( 001fbdf71 )
Cybereasonmalicious.adb81a
BitDefenderThetaAI:Packer.CFF5A9E71F
VirITTrojan.Win32.Dwnldr.AA
CyrenW32/Injector.AV.gen!Eldorado
SymantecTrojan.Dropper
ESET-NOD32a variant of Win32/Injector.ELH
TrendMicro-HouseCallTROJ_GEN.R002C0CL521
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Inject.bbyo
BitDefenderTrojan.GenericKDZ.74269
NANO-AntivirusTrojan.Win32.Inject.csnmkc
ViRobotTrojan.Win32.Z.Inject.116154.P
AvastWin32:Taidoor-D [Trj]
RisingMalware.Obscure/Heur!1.A89E (CLASSIC)
Ad-AwareTrojan.GenericKDZ.74269
EmsisoftTrojan.GenericKDZ.74269 (B)
ComodoTrojWare.Win32.Inject.ka@4o81ww
BaiduWin32.Trojan.Inject.bf
VIPRETrojan.Win32.Inject.cj (v)
TrendMicroTROJ_GEN.R002C0CL521
McAfee-GW-EditionBehavesLike.Win32.Backdoor.cc
SophosMal/Generic-S + Troj/CeeInj-M
IkarusBackdoor.Win32.Simbot
JiangminTrojan.Inject.cbpg
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Generic.ASBOL.68
GridinsoftRansom.Win32.Zbot.sa
MicrosoftTrojan:Win32/Spy.Zbot.ACM!MTB
GDataTrojan.GenericKDZ.74269
SentinelOneStatic AI – Malicious PE
AhnLab-V3Backdoor/Win32.CSon.R7666
Acronissuspicious
McAfeeBackDoor-EYG
VBA32SScope.Backdoor.Simbot
APEXMalicious
TencentTrojan.Win32.Inject.bbyoa
YandexTrojan.GenAsa!5YxMY2U2QLk
MAXmalware (ai score=81)
eGambitUnsafe.AI_Score_99%
FortinetW32/Injector.ELH!tr
AVGWin32:Taidoor-D [Trj]
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Mal/Generic-S + Troj/CeeInj-M?

Mal/Generic-S + Troj/CeeInj-M removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment