Malware

Should I remove “Win32:GenMalicious-BND [Trj]”?

Malware Removal

The Win32:GenMalicious-BND [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32:GenMalicious-BND [Trj] virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32:GenMalicious-BND [Trj]?


File Info:

crc32: 83ACDBF6
md5: 1d3f0e4c9fcf4b37beef0699a021586f
name: 1D3F0E4C9FCF4B37BEEF0699A021586F.mlw
sha1: 66a358c546abb664453c703db73fce39a329d90e
sha256: f582227cfc3d562d87e8dcf0d1c74c5457d25cc2facba7bedcb62a72bbeac5b4
sha512: 97cef3815be96c013f9a66e06438360242bd0130302e6f1d28d9f22523ca4947f3c9a5ea035ec356262feffc634774e642a29a5638ece88c2a5068a030cd0b5c
ssdeep: 6144:/B5ASURpu8Aw72+AeXfVKoni+LiwAEQoWAufvqFYIwen/Z9Pe7yyjbz:MpR8jwaevVPhLiw5WAuX6YKR9W+Yb
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

FileVersion: 1.2.3.10
CompanyName: x51e4x51f0x5de5x4f5cx5ba4
Comments: x7070x9e3dx5b50x8fdcx7a0bx7ba1x7406
ProductVersion: 1.2.3.0
FileDescription: x51e4x51f0x5de5x4f5cx5ba4
OriginalFilename: H_Client.exe
Translation: 0x0804 0x03a8

Win32:GenMalicious-BND [Trj] also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Trojan.Heur.sm0@r5Srctpbk
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
Cybereasonmalicious.c9fcf4
CyrenW32/Hupigon.H.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:GenMalicious-BND [Trj]
BitDefenderGen:Trojan.Heur.sm0@r5Srctpbk
MicroWorld-eScanGen:Trojan.Heur.sm0@r5Srctpbk
Ad-AwareGen:Trojan.Heur.sm0@r5Srctpbk
SophosML/PE-A + Mal/Hupig-H
ComodoPacked.Win32.MUPX.Gen@24tbus
BitDefenderThetaAI:Packer.17C98C651D
VIPREBackdoor.Win32.Hupigon (v)
TrendMicroTROJ_GEN.R005C0PF721
McAfee-GW-EditionBehavesLike.Win32.Autorun.dc
FireEyeGeneric.mg.1d3f0e4c9fcf4b37
EmsisoftGen:Trojan.Heur.sm0@r5Srctpbk (B)
SentinelOneStatic AI – Suspicious PE
JiangminHeur:Backdoor/Huigezi
AviraBDS/Hupigon.Gen
eGambitUnsafe.AI_Score_100%
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Trojan.Heur.sm0@r5Srctpbk
AhnLab-V3Backdoor/Win32.Hupigon.R839
McAfeeGeneric Malware.bj
MAXmalware (ai score=80)
PandaBck/Hupigon.gen
TrendMicro-HouseCallTROJ_GEN.R005C0PF721
RisingMalware.Heuristic!ET#94% (RDMK:cmRtazque2yw7XiWA9e72TaaNs5Y)
YandexTrojan.GenAsa!h+e+gDM60kA
IkarusPacker.Win32.PolyCrypt.b
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Hupig.H!tr
AVGWin32:GenMalicious-BND [Trj]

How to remove Win32:GenMalicious-BND [Trj]?

Win32:GenMalicious-BND [Trj] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment