Malware

Generik.DMJMFNL removal tips

Malware Removal

The Generik.DMJMFNL is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.DMJMFNL virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (2 unique times)
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Performs some HTTP requests
  • Uses Windows utilities for basic functionality
  • Detects Sandboxie through the presence of a library
  • Detects Avast Antivirus through the presence of a library
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Creates a hidden or system file
  • Attempts to modify proxy settings

Related domains:

iplogger.org
www.bing.com

How to determine Generik.DMJMFNL?


File Info:

crc32: DEE140A0
md5: 22a31034dd7ea5d7e326b7c201c3681b
name: upload_file
sha1: c662b0a5d0397bd0794623691fce5c30edf9b96c
sha256: a885deba3998daa49afe5db90f65d2430a177f6a0dddd1ff8bb05e7a81aff726
sha512: 8cf7579a009b33212ea746ba800075cffc0992266fc5e6042ecb37e8f4238474a572b8111539612e141226132f675be8c8ea1794da4d0699f9c826b7ed898996
ssdeep: 24576:AyIYBezq0JEcxL/+JUmWKGW+wuhgAvAv3vzvTvTvTvTvTvTvTvTvTvTvTvTvTvTr:AyIu0Uri302pcgHd+X6dviBwvpVA
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
FileVersion:
CompanyName: Dpeams
Comments: This installation was built with Inno Setup.
ProductName: RASOL
ProductVersion: 7.45
FileDescription: RASOL Setup
Translation: 0x0000 0x04b0

Generik.DMJMFNL also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.43718550
FireEyeTrojan.GenericKD.43718550
Qihoo-360Win32/Trojan.f22
ALYacTrojan.GenericKD.43718550
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Multi.Generic.4!c
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.43718550
K7GWRiskware ( 0040eff71 )
TrendMicroTROJ_GEN.R002C0DHO20
BitDefenderThetaGen:NN.ZexaF.34196.oqW@a8xg5LaG
SymantecSMG.Heur!gen
TrendMicro-HouseCallTROJ_GEN.R002C0DHO20
AvastWin32:Malware-gen
KasperskyTrojan.Win32.Chapak.eurz
AlibabaTrojan:Win32/Chapak.33aff036
Ad-AwareTrojan.GenericKD.43718550
F-SecureTrojan.TR/Chapak.euxbi
SophosMal/Generic-S
JiangminBackdoor.Mokes.cnq
AviraTR/Chapak.euxbi
MicrosoftTrojan:Win32/Ymacco.AA8D
ArcabitTrojan.Generic.D29B1796
ZoneAlarmTrojan.Win32.Chapak.eurz
GDataTrojan.GenericKD.43718550
AhnLab-V3Trojan/Win32.Wacatac.R349065
McAfeeArtemis!22A31034DD7E
MAXmalware (ai score=87)
MalwarebytesTrojan.Dropper
PandaTrj/CI.A
APEXMalicious
ESET-NOD32a variant of Generik.DMJMFNL
IkarusTrojan.Dofoil
FortinetW32/Ursu.926483!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
MaxSecureTrojan.Malware.105705929.susgen

How to remove Generik.DMJMFNL?

Generik.DMJMFNL removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment