Malware

Should I remove “Generik.BNCLFUY”?

Malware Removal

The Generik.BNCLFUY is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.BNCLFUY virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Executed a process and injected code into it, probably while unpacking
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generik.BNCLFUY?


File Info:

crc32: 2E7F5473
md5: e54c4af07815d077310fa99be794aa62
name: upload_file
sha1: 08102606b1d43a6a571034ee9f51af9c14efab49
sha256: 9e66dfb8bc283a6f942a684db958e6e33f49e041401da7523b8acfcb2a01ef9a
sha512: 6459db223c461a1a38a2e9e3bb86e8d78ed17652bdb285f0fd296728f53a265d7b79c50e24cf33f2afd5d76b862cd50cd214e6d66ff34d87aeef8eec83876865
ssdeep: 12288:BK2mhAMJ/cPlJ9p/ghbI7HUl2Xi7+Fsjrqp18C5LATiBBDWeVnj4cfR1vXboURcS:w2O/GlJfgt2HDQkeNTxeVj4cpFMnM/1
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generik.BNCLFUY also known as:

MicroWorld-eScanTrojan.Rasftuby.Gen.11
CAT-QuickHealTrojan.Agent
McAfeeRDN/Generic.dx
CylanceUnsafe
VIPRETrojan.Win32.Starter
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.Rasftuby.Gen.11
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.07815d
TrendMicroTROJ_GEN.R002C0RGV20
F-ProtW32/Starter.D.gen!Eldorado
SymantecTrojan.Gen.MBT
APEXMalicious
Paloaltogeneric.ml
GDataTrojan.Rasftuby.Gen.11
KasperskyTrojan.Win32.Agent.gen
AlibabaVirTool:Win32/VBInject.54da9405
AvastWin32:Malware-gen
Ad-AwareTrojan.Rasftuby.Gen.11
SophosMal/RarMal-E
F-SecureTrojan.TR/Patched.Gen
DrWebTrojan.Inject3.45549
Trapminesuspicious.low.ml.score
FireEyeTrojan.Rasftuby.Gen.11
EmsisoftTrojan.Rasftuby.Gen.11 (B)
CyrenW32/Starter.D.gen!Eldorado
AviraKHFOPL.sfx.exe
ArcabitTrojan.Rasftuby.Gen.11
ZoneAlarmTrojan.Win32.Agent.gen
MicrosoftVirTool:Win32/VBInject
CynetMalicious (score: 85)
ALYacTrojan.Rasftuby.Gen.11
ESET-NOD32a variant of Generik.BNCLFUY
TrendMicro-HouseCallTROJ_GEN.R002C0RGV20
TencentWin32.Trojan.Generik.Airs
MAXmalware (ai score=84)
FortinetW32/Generik.BNCLFUY!tr
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Generik.BNCLFUY?

Generik.BNCLFUY removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment