Malware

Should I remove “Generik.BAFOFMP”?

Malware Removal

The Generik.BAFOFMP is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.BAFOFMP virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • A process created a hidden window
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Network activity detected but not expressed in API logs

How to determine Generik.BAFOFMP?


File Info:

crc32: 1A194122
md5: f21d13ff68c6f37fdffc731b67dbea4f
name: installer.jpg
sha1: a4ba2760002c117d818c724dc8e115744d059fe6
sha256: 8617cc6ca0d1595b18beda2f18ba7aa387ea0d0d665431afb1ed1eb41247785c
sha512: f2e4bc7673573b627024614a36800f7ba864ee4b636c2af02ee73a94f0c3470412bd01116ee57b0b3b22c8a77e9ca7463f8dbbcafca7201dd89030e19d30eeeb
ssdeep: 49152:Xh+ZkldoPK8YaI6xftzGbgyELh2s1fPiJPMSL:g2cPK8vrvyEB1fPiJE
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0809 0x04b0

Generik.BAFOFMP also known as:

BkavW32.AIDetectVM.malware2
MicroWorld-eScanTrojan.GenericKD.33503280
FireEyeGeneric.mg.f21d13ff68c6f37f
Qihoo-360Win32/Trojan.Dropper.cd0
McAfeeArtemis!F21D13FF68C6
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabHacktool.Win32.Gamehack.3!e
SangforMalware
K7AntiVirusTrojan ( 0050a99c1 )
BitDefenderTrojan.GenericKD.33503280
Cybereasonmalicious.0002c1
TrendMicroTrojan.Win32.WACATAC.THCOCBO
CyrenW32/Trojan.KDVK-8475
SymantecTrojan.Gen.MBT
APEXMalicious
AvastWin32:Trojan-gen
GDataTrojan.GenericKD.33503280
KasperskyHEUR:Trojan.Script.Generic
AlibabaTrojan:Win32/Generic.b6895883
NANO-AntivirusTrojan.Win32.Mlw.ghmcyp
TencentWin32.Trojan-dropper.Autoit.Dzjh
Endgamemalicious (high confidence)
EmsisoftTrojan.GenericKD.33503280 (B)
F-SecureDropper.DR/AutoIt.Gen8
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Downloader.tc
SophosMal/Generic-S
IkarusTrojan.Win32.Injector
AviraDR/AutoIt.Gen8
MAXmalware (ai score=80)
MicrosoftTrojan:Win32/Occamy.C
ArcabitTrojan.Generic.D1FF3830
ZoneAlarmHEUR:Trojan.Win32.Generic
AhnLab-V3Malware/Win32.Generic.C3563244
Acronissuspicious
ALYacTrojan.GenericKD.33503280
Ad-AwareTrojan.GenericKD.33503280
MalwarebytesTrojan.Agent.AutoIt
PandaTrj/CI.A
ESET-NOD32a variant of Generik.BAFOFMP
TrendMicro-HouseCallTrojan.Win32.WACATAC.THCOCBO
eGambitUnsafe.AI_Score_99%
FortinetW32/Injector_Autoit.BYA!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_90% (W)
MaxSecureTrojan.Malware.300983.susgen

How to remove Generik.BAFOFMP?

Generik.BAFOFMP removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment