Malware

Should I remove “Win32/GenCBL.ADL”?

Malware Removal

The Win32/GenCBL.ADL is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/GenCBL.ADL virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • A process created a hidden window
  • The binary likely contains encrypted or compressed data.
  • Executed a process and injected code into it, probably while unpacking

How to determine Win32/GenCBL.ADL?


File Info:

crc32: ECB411D9
md5: e83b5f2b03ffe236917d448f42937528
name: E83B5F2B03FFE236917D448F42937528.mlw
sha1: f316f26720a06f7698e2ad6bb6e5bb64bfd602ef
sha256: 978a48a2dabf47b1f89f176583063b5b52f68ef81dc48e6f4acf38a16ef3680f
sha512: da6d0914bdeba06a323f3a22292cf51497ab3e27f8ad1d1c6b77fa7e8e248c5a3139d8b7efd61edb2c2a91ac8482f5b2095d9aade7befe6813766c38d81fe8aa
ssdeep: 12288:gqFIlDHGjf9HdagGizzBwQQGPJM5r6rC25NRHQTqW:9Wsjf9GizzBwx185NRwTqW
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/GenCBL.ADL also known as:

K7AntiVirusTrojan ( 0057955b1 )
ALYacTrojan.GenericKD.45913370
CrowdStrikewin/malicious_confidence_80% (W)
AlibabaBackdoor:Win32/GenCBL.76ed05b5
K7GWTrojan ( 0057955b1 )
ESET-NOD32a variant of Win32/GenCBL.ADL
AvastFileRepMalware
KasperskyHEUR:Backdoor.Win32.Xaparo.gen
BitDefenderTrojan.GenericKD.45913370
MicroWorld-eScanTrojan.GenericKD.45913370
Ad-AwareTrojan.GenericKD.45913370
SophosMal/Generic-S
ComodoMalware@#2cbs6m52ojcqd
McAfee-GW-EditionArtemis!Trojan
FireEyeTrojan.GenericKD.45913370
EmsisoftTrojan.GenericKD.45913370 (B)
KingsoftWin32.Hack.Undef.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmHEUR:Backdoor.Win32.Xaparo.gen
GDataTrojan.GenericKD.45913370
McAfeeArtemis!E83B5F2B03FF
PandaTrj/CI.A
IkarusTrojan.Win32.Gencbl
FortinetW32/Xaparo.ADL!tr.bdr
AVGFileRepMalware
Paloaltogeneric.ml
Qihoo-360Win32/Backdoor.Generic.HgIASQ8A

How to remove Win32/GenCBL.ADL?

Win32/GenCBL.ADL removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment