Malware

What is “Generik.DZDRCLF”?

Malware Removal

The Generik.DZDRCLF is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.DZDRCLF virus can do?

  • A potential decoy document was displayed to the user
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs

How to determine Generik.DZDRCLF?


File Info:

crc32: 7F6C914F
md5: 931b0167bac63fc63ea668fc8d21f292
name: upload_file
sha1: 368fd881be963886db4cff75d754ff470c560fd7
sha256: 441ad457e4ddfaca677155904b89ca29985e8a97d7b9477c7629d7e3acbcbd43
sha512: fb691cade989f87459feac226bd52c885704b2785af8afd9d8e98208b153795ecf530d7a2010fd4c1b24895827dbdca816751be33079f09db175ea35f25628a1
ssdeep: 1536:+Yz6EYvgtCdOqbIoPaUtSPzPwFI7HvPxq4twtdARD3bNqfNpu39IId5a6XP3Mg8X:fR1qf69xak3MgxW03O5w5ksnXFYcW
type: Composite Document File V2 Document, Little Endian, Os: Windows, Version 6.2, Code page: 1252, Title: Explicabo., Author: Pierre Maillard, Template: Normal.dotm, Revision Number: 1, Name of Creating Application: Microsoft Office Word, Create Time/Date: Thu Sep 24 15:59:00 2020, Last Saved Time/Date: Thu Sep 24 15:59:00 2020, Number of Pages: 1, Number of Words: 2270, Number of Characters: 12942, Security: 8

Version Info:

0: [No Data]

Generik.DZDRCLF also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanVB:Trojan.VBA.Agent.BHU
FireEyeVB:Trojan.VBA.Agent.BHU
CAT-QuickHealW97M.Emotet.Heur
McAfeeW97M/Downloader.dbv
AegisLabTrojan.MSWord.Generic.4!c
K7AntiVirusTrojan ( 0056edf51 )
K7GWTrojan ( 0056edf51 )
TrendMicroTrojan.W97M.EMOTET.TIOIBELH
CyrenW97M/Downldr.IE.gen!Eldorado
SymantecW97M.Downloader
TrendMicro-HouseCallTrojan.W97M.EMOTET.TIOIBELH
ClamAVDoc.Downloader.Emotet-9765780-0
KasperskyHEUR:Trojan.MSOffice.SAgent.gen
BitDefenderVB:Trojan.VBA.Agent.BHU
ViRobotDOC.Z.Agent.165226
RisingMalware.ObfusVBA@ML.97 (VBA)
Ad-AwareVB:Trojan.VBA.Agent.BHU
EmsisoftTrojan-Downloader.Macro.Generic.BI (A)
ComodoMalware@#1rhl7yn03bnrs
F-SecureMalware.W97M/Agent.1869613
DrWebExploit.Siggen2.43273
InvinceaMal/DocDl-K
McAfee-GW-EditionW97M/Downloader.dbv
SophosMal/DocDl-K
SentinelOneDFI – Malicious OLE
AviraW97M/Agent.1869613
Antiy-AVLTrojan[Downloader]/MSOffice.Agent.kgy
MicrosoftTrojanDownloader:O97M/Emotet.CSK!MTB
ArcabitVB:Trojan.VBA.Agent.BHU
ZoneAlarmHEUR:Trojan.MSOffice.SAgent.gen
GDataVB:Trojan.VBA.Agent.BHU
AhnLab-V3Downloader/DOC.Emotet.S1294
ALYacTrojan.Downloader.DOC.Gen
ESET-NOD32a variant of Generik.DZDRCLF
TencentHeur.Macro.Generic.h.df7c7026
IkarusTrojan.VBA.Agent
FortinetVBA/Agent.DBV!tr.dldr
Qihoo-360virus.office.qexvmc.1090

How to remove Generik.DZDRCLF?

Generik.DZDRCLF removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment