Malware

Generik.EJLYWS removal

Malware Removal

The Generik.EJLYWS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.EJLYWS virus can do?

  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs

How to determine Generik.EJLYWS?


File Info:

crc32: C833ECC5
md5: 370096e8e7bc844f13f45cfb7db90ee7
name: upload_file
sha1: 24e1a837d29a0423c582d969a89589ef617de124
sha256: a2bdc474a5f371cab83004e856bcabe60d9eab2ea3c70babfb04a5d7c4d126fa
sha512: 0a553e65a2881056c2b4d96745e09b04a4df58187d9d6438af196886da9f0013a22da84844d2ea5a8fd94753e27eac46a8c96aa47b5c03d70eaee299bf86e9ea
ssdeep: 3072:NfCMbu1Ty+cradcOWNt9kXBmfE7qdmVJKk/Juvc5a8aHXdN:Nf1uc+eZhXdN
type: Composite Document File V2 Document, Little Endian, Os: Windows, Version 6.2, Code page: 1252, Title: Iure., Author: Baptiste Le roux, Template: Normal.dotm, Revision Number: 1, Name of Creating Application: Microsoft Office Word, Create Time/Date: Thu Oct 1 16:57:00 2020, Last Saved Time/Date: Thu Oct 1 16:57:00 2020, Number of Pages: 1, Number of Words: 4900, Number of Characters: 27935, Security: 8

Version Info:

0: [No Data]

Generik.EJLYWS also known as:

Elasticmalicious (high confidence)
DrWebExploit.Siggen2.47089
MicroWorld-eScanTrojan.GenericKD.43951047
FireEyeTrojan.GenericKD.43951047
CAT-QuickHealW97M.Emotet.Heur
McAfeeW97M/Downloader.dbv
K7AntiVirusTrojan ( 0056edf51 )
K7GWTrojan ( 0056edf51 )
TrendMicroTrojan.W97M.EMOTET.SMBA
CyrenW97M/Downldr.IE.gen!Eldorado
SymantecW97M.Downloader
TrendMicro-HouseCallTrojan.W97M.EMOTET.SMBA
AvastOther:Malware-gen [Trj]
ClamAVDoc.Downloader.Emotet-9770127-0
KasperskyHEUR:Trojan.MSOffice.SAgent.gen
BitDefenderTrojan.GenericKD.43951047
NANO-AntivirusTrojan.Script.Downloader.hyszps
ViRobotDOC.Z.Agent.166878
AegisLabTrojan.MSOffice.SAgent.4!c
Ad-AwareTrojan.GenericKD.43951047
SophosTroj/DocDl-AATT
ComodoMalware@#2cqiaz30i4k1w
F-SecureMalware.W97M/Agent.7041512
InvinceaTroj/DocDl-AATT
McAfee-GW-EditionW97M/Downloader.dbv
EmsisoftTrojan-Downloader.Macro.Generic.BO (A)
AviraW97M/Agent.7041512
Antiy-AVLTrojan[Downloader]/MSOffice.Agent.unb
MicrosoftTrojanDownloader:O97M/Emotet.CSK!MTB
ZoneAlarmHEUR:Trojan.MSOffice.SAgent.gen
GDataTrojan.GenericKD.43951047
CynetMalicious (score: 85)
AhnLab-V3Downloader/DOC.Emotet.S1297
ALYacTrojan.Downloader.DOC.Gen
MAXmalware (ai score=100)
ESET-NOD32a variant of Generik.EJLYWS
RisingMalware.ObfusVBA@ML.91 (VBA)
FortinetVBA/Agent.0CCA!tr
AVGOther:Malware-gen [Trj]
Qihoo-360virus.office.qexvmc.1070

How to remove Generik.EJLYWS?

Generik.EJLYWS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment