Malware

Generik.DWDMKAI malicious file

Malware Removal

The Generik.DWDMKAI is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.DWDMKAI virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Executed a command line with /C or /R argument to terminate command shell on completion which can be used to hide execution
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality
  • Uses Windows utilities for basic functionality

How to determine Generik.DWDMKAI?


File Info:

name: 8E02A6F261374B21F5E8.mlw
path: /opt/CAPEv2/storage/binaries/83fce30eb05ecadc7bcc4ec8146b19b2e403c0c8b3cfcaf865b92fd202a17c69
crc32: 4BF383F3
md5: 8e02a6f261374b21f5e8e34f4f2c66ac
sha1: 3465f9f31ec6b8d238e78ce7024f72028654edc6
sha256: 83fce30eb05ecadc7bcc4ec8146b19b2e403c0c8b3cfcaf865b92fd202a17c69
sha512: aa11bf4ab5ab19300e69d7efe0f0c1b87d16aabb04d15a5cf3c698436f70ce8913acb08dfc6dcecdfa010e6a9f8fdf01f193b4300aca0d4da2e0ee374bd24284
ssdeep: 98304:l2Q1t+iVyIIxkLrFkRgS6AKJ1EvaaIRKnXXgdRvfVx2Lxj0tj7eKHFxOkO3Z0:rtUII4Fk2bAKvEvJI4XQL1QLxjsjdFx7
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E0363341FA31AD33C012783A64B9A921D479B9216E15EAEF13D8492CAB715C1FF30B77
sha3_384: 9829dd7f8b502b43a4e153160c67ed1ad240865a90d296be3cdced1628a0a542b9ff8b7abcfd16534c0dec0e14327657
ep_bytes: e8a4040000e988feffff3b0d68e64300
timestamp: 2021-04-07 14:39:21

Version Info:

0: [No Data]

Generik.DWDMKAI also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Mucc.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKDZ.79899
FireEyeGeneric.mg.8e02a6f261374b21
McAfeeArtemis!8E02A6F26137
CylanceUnsafe
AlibabaTrojan:Win32/Generic.28599a76
K7GWTrojan ( 0056e5201 )
K7AntiVirusTrojan ( 0056e5201 )
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Generik.DWDMKAI
TrendMicro-HouseCallTROJ_GEN.R002H0CLA21
KasperskyTrojan.Win32.Mucc.uce
BitDefenderTrojan.GenericKDZ.79899
ViRobotTrojan.Win32.Z.Agent.5137256
AvastWin32:Trojan-gen
EmsisoftTrojan.MSIL.Injector.MF (B)
McAfee-GW-EditionBehavesLike.Win32.Generic.rc
SophosMal/Generic-S
GDataTrojan.MSIL.Injector.MF
AviraTR/Mucc.wkswc
GridinsoftRansom.Win32.Sabsik.sa
ArcabitTrojan.Generic.D1381B
MicrosoftTrojan:Win32/Tiggre!rfn
CynetMalicious (score: 100)
VBA32Trojan.Mucc
ALYacTrojan.MSIL.Injector.MF
MAXmalware (ai score=80)
APEXMalicious
SentinelOneStatic AI – Suspicious SFX
AVGWin32:Trojan-gen
Cybereasonmalicious.261374
PandaTrj/CI.A

How to remove Generik.DWDMKAI?

Generik.DWDMKAI removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment