Malware

Generik.EAOKAT removal

Malware Removal

The Generik.EAOKAT is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.EAOKAT virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself

Related domains:

heritage.nflfan.org

How to determine Generik.EAOKAT?


File Info:

crc32: 9D589773
md5: 60bad4b935f14bfb0eab1022a9ca1ed6
name: 60BAD4B935F14BFB0EAB1022A9CA1ED6.mlw
sha1: 29136c2dbf07137ac2b65f7818458b2ab592bbf6
sha256: 5b6a727dd5cd62e1cf36655941a5226474a76076d53898d3e95fc9151bedfa5f
sha512: e0c40c02653f2a695049342491580c78343156f887cb58a53da1316dcb7ca2c850f32b1e4d99d5564e53144cbe154d253563630d0eaeedcfc31ed52087b45563
ssdeep: 12288:/JLyEtfoML00jYYp7lTVD/052lhihqWLTcJoSekJVJ9jGk1Zo6Wa8bE99:/JWekYp7zZkhqWLTEoSekJT9jGk1ZPWq
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: (C)Check Point Software Technologies Ltd. 2007-2015
InternalName: Startups
FileVersion: 5.2.26.164
CompanyName: Check Point Software Technologies Ltd.
ProductName: Startups
Languages: English
ProductVersion: 5.2.26.164
FileDescription: Nw Octagonal Earliest Tec Ubt
OriginalFilename: Startups
Translation: 0x0409 0x04b0

Generik.EAOKAT also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0054f40b1 )
LionicTrojan.Win32.Generic.4!c
DrWebTrojan.MulDrop9.13089
CynetMalicious (score: 99)
ALYacTrojan.GenericKD.44804462
CylanceUnsafe
ZillyaBackdoor.Poison.Win32.90945
SangforTrojan.Win32.GenericKD.4
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/NetWireRC.2598dc4d
K7GWTrojan ( 0054f40b1 )
Cybereasonmalicious.935f14
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.EAOKAT
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.GenericKD.44804462
NANO-AntivirusTrojan.Win32.Poison.fqvlda
MicroWorld-eScanTrojan.GenericKD.44804462
TencentWin32.Backdoor.Netwire.Auto
Ad-AwareTrojan.GenericKD.44804462
ComodoMalware@#127nhwhx3e6ge
BitDefenderThetaGen:NN.ZexaF.34058.Qq0@a8u3Jvfi
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0WDP21
McAfee-GW-EditionBehavesLike.Win32.Ransomware.jh
FireEyeGeneric.mg.60bad4b935f14bfb
EmsisoftTrojan.GenericKD.44804462 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Obfuscated.Gen.b
AviraHEUR/AGEN.1125216
Antiy-AVLTrojan/Generic.ASMalwS.2BAC7B0
MicrosoftTrojan:Win32/Skeeyah.A!MTB
ArcabitTrojan.Generic.D2ABA96E
GDataTrojan.GenericKD.44804462
AhnLab-V3Malware/Win32.Generic.C3977667
McAfeeRDN/Generic.hbg
MAXmalware (ai score=94)
VBA32BScope.Trojan.Dyre
MalwarebytesBackdoor.NetWiredRC
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0WDP21
RisingTrojan.Generic@ML.83 (RDMK:UXrS28wPFq8V6raFvkvwVw)
YandexBackdoor.Poison!XhW1CZZAo3Y
IkarusBackdoor.Win32.NetWireRC
MaxSecureTrojan.Malware.1728101.susgen
FortinetW32/Generik.EAOKAT!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Generic.HwoCHz8A

How to remove Generik.EAOKAT?

Generik.EAOKAT removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment