Malware

What is “Generic.Lineage.F9CD9020”?

Malware Removal

The Generic.Lineage.F9CD9020 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Lineage.F9CD9020 virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Generic.Lineage.F9CD9020?


File Info:

name: 0B842B86539DDC2410B8.mlw
path: /opt/CAPEv2/storage/binaries/016ef3b11a2ae192c5fb1ab5aafdc9410ebba19f9eff574d360afff35b8002f6
crc32: A6CB1DA2
md5: 0b842b86539ddc2410b8bd30f2452c76
sha1: 8364a99b802a3d273741a24b51f388790b560ee0
sha256: 016ef3b11a2ae192c5fb1ab5aafdc9410ebba19f9eff574d360afff35b8002f6
sha512: 2143ce04237673ce0995935770f1065534409f100006d7f651de49531881750ac5f0a997a33f7f27c5341af3eb83fb483b2e040344764ba16bec321b99c5c00c
ssdeep: 3072:KTbvY7uWF1E7i+0OxUWnR7huZy1umqTEfvvf5bmdOL8BtjQLQWRpkjEkUgG/lhK:KWXTQUWRsZ0388vH5KOL4SLuVUgGt0
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T119F32356BE791F3BE52547BE7A1C2227DDF1A030C85050A68EEF4C4B9BB274454A0F53
sha3_384: 35e0a68200b84b7e0b6c522587fb2c1e0bc1c41c669c59f06d157cfd198ee3b4d1782173ca3ddc31f49d0eceda0bd335
ep_bytes: 60e8b70000002ee00400000000000000
timestamp: 2014-01-07 06:50:55

Version Info:

0: [No Data]

Generic.Lineage.F9CD9020 also known as:

DrWebBackDoor.Bulknet.1713
MicroWorld-eScanDeepScan:Generic.Lineage.F9CD9020
FireEyeGeneric.mg.0b842b86539ddc24
CAT-QuickHealTrojan.Drov.D.mue
ALYacDeepScan:Generic.Lineage.F9CD9020
CylanceUnsafe
VIPREDeepScan:Generic.Lineage.F9CD9020
SangforSuspicious.Win32.Save.a
K7AntiVirusSpyware ( 00496a511 )
K7GWSpyware ( 00496a511 )
CrowdStrikewin/malicious_confidence_90% (W)
BitDefenderThetaAI:Packer.098028D021
VirITTrojan.Win32.Generic.DLQ
CyrenW32/Lineage.D.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Adware.BHO.NJY
APEXMalicious
TrendMicro-HouseCallTROJ_GEN.R035C0OI522
KasperskyTrojan.Win32.Emager.ngb
BitDefenderDeepScan:Generic.Lineage.F9CD9020
NANO-AntivirusTrojan.Win32.FKM.dsobxk
SUPERAntiSpywareTrojan.Agent/Gen-Zzinfor
RisingBackdoor.Dusenr!1.A20B (CLASSIC)
Ad-AwareDeepScan:Generic.Lineage.F9CD9020
EmsisoftDeepScan:Generic.Lineage.F9CD9020 (B)
ComodoTrojWare.Win32.BHO.NJYY@56oayy
BaiduWin32.Trojan-PSW.OLGames.au
TrendMicroTROJ_GEN.R035C0OI522
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.cc
Trapminemalicious.high.ml.score
SophosTroj/Agent-AGDA
IkarusTrojan-Dropper.Win32.Injector
GDataDeepScan:Generic.Lineage.F9CD9020
JiangminTrojan.Emager.aoh
WebrootW32.Malware.gen
GoogleDetected
AviraTR/Dropper.Gen
ZoneAlarmTrojan.Win32.Emager.ngb
MicrosoftBackdoor:Win32/Zegost!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Small.R454673
McAfeeArtemis!0B842B86539D
MAXmalware (ai score=84)
VBA32BScope.Trojan.Emager
PandaTrj/Genetic.gen
ZonerProbably Heur.ExeHeaderL
TencentTrojan.Win32.Dropper.abe
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.AGDA!tr
AVGWin32:Adware-gen [Adw]
Cybereasonmalicious.6539dd
AvastWin32:Adware-gen [Adw]

How to remove Generic.Lineage.F9CD9020?

Generic.Lineage.F9CD9020 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment