Malware

Generik.EKOQFLA removal guide

Malware Removal

The Generik.EKOQFLA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.EKOQFLA virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is likely packed with VMProtect
  • Authenticode signature is invalid

How to determine Generik.EKOQFLA?


File Info:

name: B49D41E80664F913E7E3.mlw
path: /opt/CAPEv2/storage/binaries/72111582f545744da1b6a2c82643303a22384375a5646a52fd88998138e4bbd8
crc32: B87B1C89
md5: b49d41e80664f913e7e3f359e1d13817
sha1: cd1e43b8755ca5f0756e4dcf4d627f2ddcdc90d8
sha256: 72111582f545744da1b6a2c82643303a22384375a5646a52fd88998138e4bbd8
sha512: 609ac235ac31144626562aa8df7604293a418ca63fcb244898ee0052a2a35d6874d7219b387126aaf025c72e5d3807421f94d9d25c3690d96c401e6c7417b80e
ssdeep: 98304:jRtilbPNVA8Kz87WvSy+TFXaTfe83yMkY8i9H0jnzF/WY2M3eAKN:ENVA8j7aFjemyO8ih0jzV8MuZ
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T1415623E9614C335CC4668834D533F918B2B6A51E13E6D8AA75CBFFE07B6B431D901B0A
sha3_384: 1493f3c1ddc9a4e7b4959f337ac6c47dc077dd46ae778d64c91bd1686627c462316d741ddd89addc5d8c24783e0c6a36
ep_bytes: 68ac2a0018e8003503008ac91e99bcff
timestamp: 2021-08-03 03:14:10

Version Info:

0: [No Data]

Generik.EKOQFLA also known as:

LionicTrojan.Win32.Badur.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.46746932
FireEyeGeneric.mg.b49d41e80664f913
McAfeeArtemis!B49D41E80664
ZillyaTrojan.Badur.Win32.34620
K7AntiVirusRiskware ( 0040eff71 )
AlibabaTrojan:Win32/Vmprotect.8cc0f4fd
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_60% (W)
CyrenW64/Trojan.LRQP-5165
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Generik.EKOQFLA
APEXMalicious
Paloaltogeneric.ml
KasperskyUDS:Trojan.Win32.Badur
BitDefenderTrojan.GenericKD.46746932
AvastWin64:Trojan-gen
Ad-AwareTrojan.GenericKD.46746932
EmsisoftTrojan.GenericKD.46746932 (B)
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0WH721
McAfee-GW-EditionBehavesLike.Win64.Generic.tc
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Badur.hj
WebrootW32.Trojan.Gen
MicrosoftTrojan:Win32/Trickbot
GDataTrojan.GenericKD.46746932
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.46746932
MAXmalware (ai score=84)
VBA32Trojan.Badur
CylanceUnsafe
TrendMicro-HouseCallTROJ_GEN.R002C0WH721
IkarusTrojan.Win64.Vmprotect
eGambitUnsafe.AI_Score_98%
FortinetPossibleThreat.PALLAS.H
AVGWin64:Trojan-gen
Cybereasonmalicious.8755ca
PandaTrj/CI.A

How to remove Generik.EKOQFLA?

Generik.EKOQFLA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment