Malware

Generik.DPTKHJX (file analysis)

Malware Removal

The Generik.DPTKHJX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.DPTKHJX virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Generik.DPTKHJX?


File Info:

name: 02B6A952170FD5832B85.mlw
path: /opt/CAPEv2/storage/binaries/708a3a69fe44132267084953adddc20e196747be1bcc1e173afeedddee010b4c
crc32: 1050A70D
md5: 02b6a952170fd5832b856a1ab8975766
sha1: 01254eb90db590688a8aeb1905ca5cffde3b38b0
sha256: 708a3a69fe44132267084953adddc20e196747be1bcc1e173afeedddee010b4c
sha512: 9232a49a64b1ace0d42f150c82b7c707b0c65c585c77df2cf9b211b8df64539c9982df2214e987a616d8f3563f0575da65072830e120ca71a85f258e00580063
ssdeep: 6144:EDLJzs66SRsaSel1CBhqIRhZht41vUhGKRfA4:cLJzswpSeLCBhqCZEdgG+A4
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T1BF644A17E39220BCD66BC175469AA373BAB1F8252230BB3E1754C6313F51D6067BEB24
sha3_384: ab4a9cb74b3b21c4070d35dccfb6e09f87280c66c96358c6d2a1b9de89f5dccf1cf14397f49085f5ea22cbc2cf8a978a
ep_bytes: 4883ec28488d0de50a0000e8e0040000
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Generik.DPTKHJX also known as:

LionicWorm.Win32.AutoRun.o!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Tedy.53807
FireEyeGen:Variant.Tedy.53807
ALYacGen:Variant.Tedy.53807
CylanceUnsafe
ZillyaWorm.AutoRun.Win32.170360
K7AntiVirusRiskware ( 0040eff71 )
AlibabaWorm:Win32/AutoRun.5ff24fc3
K7GWRiskware ( 0040eff71 )
CyrenW64/Autorun.EP.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Generik.DPTKHJX
AvastWin64:Malware-gen
ClamAVWin.Worm.Vindor-9886047-0
KasperskyWorm.Win32.AutoRun.vx
BitDefenderGen:Variant.Tedy.53807
NANO-AntivirusTrojan.Win32.AutoRun.iwqnep
Ad-AwareGen:Variant.Tedy.53807
EmsisoftGen:Variant.Tedy.53807 (B)
DrWebWin32.HLLW.Autoruner.547
TrendMicroTROJ_GEN.R002C0PLB21
McAfee-GW-EditionRDN/Autorun.worm.gen
SophosMal/Generic-S
GDataGen:Variant.Tedy.53807
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Generic.ASMalwS.34937C8
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Worm/Win.Autorun.C4838649
McAfeeRDN/Autorun.worm.gen
MAXmalware (ai score=81)
MalwarebytesMalware.AI.3696146603
TrendMicro-HouseCallTROJ_GEN.R002C0PLB21
RisingWorm.VB!1.DA41 (CLASSIC)
FortinetW64/Agent.EP!tr
AVGWin64:Malware-gen
MaxSecureTrojan.Malware.121218.susgen

How to remove Generik.DPTKHJX?

Generik.DPTKHJX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment