Malware

Generik.CRKQPEW removal tips

Malware Removal

The Generik.CRKQPEW is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.CRKQPEW virus can do?

  • The office file contains 2 macros
  • The office file contains a macro with auto execution
  • The office file contains anomalous features
  • The office file contains a macro with suspicious strings

How to determine Generik.CRKQPEW?


File Info:

crc32: 3030BF6A
md5: 5e89988419c5aa0caefb6f2fa14cb873
name: upload_file
sha1: baf91c79dabdc697ecaee0fa304c51c862f26441
sha256: 72b8392eea93ebf8f25a1730be6e27b8d39c891301df8a7f86e7df079656ef46
sha512: eba404d9094ed1e1057b1b1ac05b2aca068a7ca8af253db0b22bd8bcf7b1700d39e958bb2c0a5a49a1d6a908d2ccd9f6e673d17e8ce57cb69a8cd0d251c594c0
ssdeep: 3072:Ej6yw1MgpQiBhGWb6esLbTh8YuyDRBFtdfGk2B+8y1w2F+R0:EHgtEWPsL/aTyT9Gk2BBy1w2QR0
type: Composite Document File V2 Document, Little Endian, Os: Windows, Version 6.2, Code page: 1252, Title: Odio., Author: Anaos Gauthier, Template: Normal.dotm, Revision Number: 1, Name of Creating Application: Microsoft Office Word, Create Time/Date: Fri Aug 14 10:34:00 2020, Last Saved Time/Date: Fri Aug 14 10:34:00 2020, Number of Pages: 1, Number of Words: 4, Number of Characters: 24, Security: 0

Version Info:

0: [No Data]

Generik.CRKQPEW also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanW97m.Downloader.IXO
FireEyeW97m.Downloader.IXO
McAfeeW97M/Dropper.gc
SymantecTrojan.Gen.2
TrendMicro-HouseCallTrojan.W97M.POWLOAD.THHAFBO
AvastScript:SNH-gen [Trj]
ClamAVDoc.Downloader.Emotet-9318305-0
KasperskyHEUR:Trojan.MSOffice.SAgent.gen
BitDefenderW97m.Downloader.IXO
ViRobotDOC.Z.Agent.239745
AegisLabTrojan.MSOffice.SAgent.4!c
RisingMalware.ObfusVBA@ML.90 (VBA)
Ad-AwareW97m.Downloader.IXO
Comodo.UnclassifiedMalware@0
F-SecureMalware.W97M/Dldr.Emotet.gyszd
DrWebExploit.Siggen2.20865
TrendMicroTrojan.W97M.POWLOAD.THHAFBO
FortinetVBA/Agent.BIP!tr.dldr
SophosMal/DocDl-K
IkarusTrojan-Downloader.VBA.Emotet
CyrenW97M/Downldr.IE.gen!Eldorado
AviraW97M/Dldr.Emotet.gyszd
MAXmalware (ai score=81)
ArcabitW97m.Downloader.IXO
MicrosoftTrojanDownloader:O97M/Emotet.CSK!MTB
CynetMalicious (score: 85)
AhnLab-V3Downloader/DOC.Emotet.S1072
ALYacW97m.Downloader.IXO
ZonerProbably Heur.W97Obfuscated
ESET-NOD32a variant of Generik.CRKQPEW
TencentHeur.Macro.Generic.h.5212a13c
GDataW97m.Downloader.IXO
AVGScript:SNH-gen [Trj]
Qihoo-360virus.office.qexvmc.1095

How to remove Generik.CRKQPEW?

Generik.CRKQPEW removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment