Malware

Mal/Generic-S + Troj/Krypt-BO information

Malware Removal

The Mal/Generic-S + Troj/Krypt-BO is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-S + Troj/Krypt-BO virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Polish
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Mal/Generic-S + Troj/Krypt-BO?


File Info:

crc32: D2B75881
md5: 965c066b4809d293def506d0bfe32234
name: 965C066B4809D293DEF506D0BFE32234.mlw
sha1: 2147707c897239547709c492afd148e9177d0f96
sha256: 186f167ea8567c0b14c7452c018fe23450b984d4b7871460afb18c9114f6c8a8
sha512: b4b795c2fe85201f5c7b3f205c636020bbe8a8e12d47edd12b94d4ad1c4d8647cf873e4a6ce7b24a5967fb25b928d5e314fb6c5c9e352a6bee712b6cd453cef1
ssdeep: 6144:XK0IIcQNbQ3GbFtxAdBBJ5UcIV2gOd1aOkD7gV6yuCtj:XK0IIcQNbXbZALJhsfwOEV6yu
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

Translation: 0x1209 0x04b8

Mal/Generic-S + Troj/Krypt-BO also known as:

K7AntiVirusRiskware ( 0040eff71 )
LionicTrojan.Win32.Malicious.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Fragtor.21524
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaBackdoor:Win32/Azorult.4cf27a05
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.ff8824
CyrenW32/Kryptik.EWJ.gen!Eldorado
SymantecPacked.Generic.525
ESET-NOD32Win32/PSW.Fareit.L
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
ClamAVWin.Packed.Generic-9894219-0
KasperskyHEUR:Backdoor.Win32.Androm.gen
BitDefenderGen:Variant.Fragtor.21524
MicroWorld-eScanGen:Variant.Fragtor.21524
TencentWin32.Backdoor.Fareit.Auto
Ad-AwareGen:Variant.Fragtor.21524
SophosMal/Generic-S + Troj/Krypt-BO
ComodoMalware@#22z26p1dd6w1k
BitDefenderThetaGen:NN.ZexaF.34142.nq0@auImkkkO
McAfee-GW-EditionBehavesLike.Win32.Generic.dh
FireEyeGeneric.mg.e50df54836bd38c8
EmsisoftTrojan.Crypt (A)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.Gen
AviraTR/AD.LokiBot.rfwau
MicrosoftTrojan:Win32/Azorult.RW!MTB
GridinsoftRansom.Win32.STOP.ko!se42434
ZoneAlarmHEUR:Backdoor.Win32.Androm.gen
GDataGen:Variant.Fragtor.21524
AhnLab-V3CoinMiner/Win.Glupteba.R441722
Acronissuspicious
McAfeePacked-GDV!E50DF54836BD
MAXmalware (ai score=100)
VBA32BScope.Trojan.Eb
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_FRS.VSNW11I21
RisingTrojan.Kryptik!1.D977 (CLASSIC)
IkarusTrojan.Win32.Krypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.FKSO!tr
AVGWin32:MalwareX-gen [Trj]
Paloaltogeneric.ml

How to remove Mal/Generic-S + Troj/Krypt-BO?

Mal/Generic-S + Troj/Krypt-BO removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment