Malware

About “Win32:GenMalicious-HRY [Trj]” infection

Malware Removal

The Win32:GenMalicious-HRY [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32:GenMalicious-HRY [Trj] virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Win32:GenMalicious-HRY [Trj]?


File Info:

name: 224F3E66E930AA826A76.mlw
path: /opt/CAPEv2/storage/binaries/00ccb2a27f63a91a5b4df814445a804c75919d3f615edf528e61c4df35c38cbc
crc32: 6007A515
md5: 224f3e66e930aa826a762ca48dc68b18
sha1: cc959f9d683dc5ea045ca255f0a001f7a5a1e090
sha256: 00ccb2a27f63a91a5b4df814445a804c75919d3f615edf528e61c4df35c38cbc
sha512: 5c64a55a178597d45b9580471b6b06bac3aa6336e625d59d0f4bc84e6789f358a673e4f915d3844e43ff992f3a0935012dd69ea86bf49c0c4e0b9aee50799d24
ssdeep: 384:F3QB+M3PnQoHDCpHf4I4QwdcJY3nrBQQBTvtcXpKDJR:Zm/QojCpHfxO3rB9vtd
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T114034943EB01C0F2C7DADBB1416BA828491ABE33EA5315A237457B6B7C317435923A1F
sha3_384: ea1db18bacc5ffc640afcf35b1a8dc03639c354a74c1e2ad4f8cee3ebf6b673e0b496df482602d8d117d2439b6a36362
ep_bytes: 00663d33c0baac2e400068d2104000c3
timestamp: 2008-05-23 01:17:07

Version Info:

0: [No Data]

Win32:GenMalicious-HRY [Trj] also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
SkyhighBehavesLike.Win32.Generic.pt
MalwarebytesGeneric.Malware.AI.DDS
SangforWorm.Win32.VB.B1uv3
Cybereasonmalicious.d683dc
SymantecTrojan.Bludiz
Elasticmalicious (high confidence)
APEXMalicious
ClamAVWin.Trojan.Agent-1388714
NANO-AntivirusTrojan.Win32.Fsysna.fuzcvt
RisingTrojan.Agent!1.9CB4 (CLASSIC)
SophosML/PE-A
BaiduWin32.Worm.VB.g
F-SecureTrojan.TR/VB.dbi
DrWebBackDoor.Tdss
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.224f3e66e930aa82
IkarusTrojan.Agent
JiangminTrojan.Fsysna.nsq
GoogleDetected
AviraTR/VB.dbi
Antiy-AVLWorm/Win32.AutoRun
Kingsoftmalware.kb.b.956
MicrosoftWorm:Win32/Autorun.XFV
CynetMalicious (score: 100)
AhnLab-V3Worm/Win.AutoRun.R618727
Acronissuspicious
DeepInstinctMALICIOUS
Cylanceunsafe
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Generic.AC.41B5AB!tr
AVGWin32:GenMalicious-HRY [Trj]
AvastWin32:GenMalicious-HRY [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Win32:GenMalicious-HRY [Trj]?

Win32:GenMalicious-HRY [Trj] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment