Malware

How to remove “Generik.BICFXLY”?

Malware Removal

The Generik.BICFXLY is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.BICFXLY virus can do?

  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Deletes its original binary from disk
  • Network activity detected but not expressed in API logs

How to determine Generik.BICFXLY?


File Info:

crc32: 91EB0371
md5: f7d51f78838308cdcd53b9c4f4af65e1
name: F7D51F78838308CDCD53B9C4F4AF65E1.mlw
sha1: cddc4f2499ffb79666db8b8c38d9f2c74b9ab219
sha256: f5758fdd9563e9b445b84a1644d9c37b3ff16903b67e7e05872c068ddd6be0c6
sha512: 3134ca19c1c0fe12a769b51909edfcc8da51b927e6414c7305d23280b8778de404759b8a56cd716a4c9fbda3f5e6b44ece160bceaa762011b35a3b40e930ae5e
ssdeep: 24576:o53uhFTnIdI5i415W1SzNraelGZtx+1iiMCgfkAyN5U0:o5+hFEdM15W1QNdcHSO3yNy0
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Zoom Video Communications, Inc. All rights reserved.
InternalName: Zoom Meetings Installer
FileVersion: 5.4.0.0
CompanyName: Zoom Video Communications, Inc.
Builder: batardpete1337@gmail.com 17:22:41 22/12/2020
Created: 7z SFX Constructor v4.5.0.0 (http://usbtor.ru/viewtopic.php?t=798)
LegalTrademarks: Zoom Meetings Installer
Comments: Zoom Meetings Installer
ProductName: Zoom Meetings Installer
ProductVersion: 5.4.0.0
FileDescription: Zoom Meetings Installer
OriginalFilename: Zoom Meetings Installer
Translation: 0x0000 0x04b0

Generik.BICFXLY also known as:

BkavW32.AIDetectVM.malware1
FireEyeGeneric.mg.f7d51f78838308cd
McAfeeArtemis!F7D51F788383
CylanceUnsafe
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
K7GWRiskware ( 0040eff71 )
CyrenW32/Trojan.SQTR-4124
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan-Spy.MSIL.Stealer.atp
AlibabaTrojan:Win32/Raccoon.c295022b
AegisLabTrojan.MSIL.Stealer.l!c
SophosMal/Generic-S
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
IkarusTrojan-Spy.Win32.Raccoon
WebrootW32.Trojan.Gen
MicrosoftTrojan:Win32/Racealer.RND!MTB
GridinsoftTrojan.Win32.Agent.oa
ZoneAlarmTrojan-Spy.MSIL.Stealer.atp
GDataWin32.Trojan-Stealer.Raccoon.O5PH1Y
CynetMalicious (score: 100)
VBA32TrojanDropper.Agent
MalwarebytesSpyware.RaccoonStealer
ESET-NOD32a variant of Generik.BICFXLY
FortinetPossibleThreat.MU
AVGWin32:Trojan-gen
AvastWin32:Trojan-gen
Qihoo-360Generic/HEUR/QVM42.3.291B.Malware.Gen

How to remove Generik.BICFXLY?

Generik.BICFXLY removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment