Malware

Win32/GenCBL.AHV (file analysis)

Malware Removal

The Win32/GenCBL.AHV is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/GenCBL.AHV virus can do?

  • Presents an Authenticode digital signature
  • The binary likely contains encrypted or compressed data.

How to determine Win32/GenCBL.AHV?


File Info:

crc32: C4453AF1
md5: 4bae4ff421105321fcf74ad7de0fa491
name: 4BAE4FF421105321FCF74AD7DE0FA491.mlw
sha1: 8a46ccda7d3f89e387f9546056472a43b5ab4f92
sha256: ed8e738447c50b48d36529c45cbfeec80da8ba9f6792bce230f5d512126e54db
sha512: d972f40e950fce49fb952990ce7a44530c5f2ff8461ff0b0f552ad599c80af1938ce2a4fc324702d1cc75fa8a139fbfa33ab9abffe762e0edcb97efd3c4dc422
ssdeep: 1536:r5a8NvpnG1Hb6Dr19sga2zVupbPSVsDCS:0evpnGMZ9sgpziSdS
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: Sleddings.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: Sleddings.exe

Win32/GenCBL.AHV also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.36742867
CylanceUnsafe
SangforTrojan.Win32.AgentTesla.ml
AlibabaTrojan:Win32/Generic.de826583
Cybereasonmalicious.a7d3f8
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenCBL.AHV
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan-GameThief.MSIL.Agent.gen
BitDefenderTrojan.GenericKD.36742867
MicroWorld-eScanTrojan.GenericKD.36742867
Ad-AwareTrojan.GenericKD.36742867
SophosMal/Generic-S
F-SecureHeuristic.HEUR/AGEN.1138001
BitDefenderThetaGen:NN.ZemsilF.34678.dm1@a8I21Gm
McAfee-GW-EditionRDN/Generic.grp
FireEyeGeneric.mg.4bae4ff421105321
EmsisoftTrojan.GenericKD.36742867 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanSpy.MSIL.bjiu
AviraHEUR/AGEN.1138001
eGambitUnsafe.AI_Score_98%
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/AgentTesla!ml
ArcabitTrojan.Generic.D230A6D3
AegisLabTrojan.MSIL.Agent.d!c
ZoneAlarmHEUR:Trojan-GameThief.MSIL.Agent.gen
GDataTrojan.GenericKD.36742867
McAfeeRDN/Generic.grp
MAXmalware (ai score=81)
MalwarebytesMachineLearning/Anomalous.96%
PandaTrj/GdSda.A
RisingTrojan.AgentTesla!8.104D5 (CLOUD)
IkarusTrojan.SuspectCRC
FortinetW32/Agent!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360HEUR/QVM03.0.BA1B.Malware.Gen

How to remove Win32/GenCBL.AHV?

Win32/GenCBL.AHV removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment