Malware

Generik.ETNGRDP removal instruction

Malware Removal

The Generik.ETNGRDP is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.ETNGRDP virus can do?

  • The office file contains 2 macros
  • The office file contains a macro with auto execution
  • The office file contains anomalous features
  • A potential decoy document was displayed to the user
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • The office file contains a macro with suspicious strings

How to determine Generik.ETNGRDP?


File Info:

crc32: 2892EC73
md5: 528dc7bb4775d8b9610c5af0062421af
name: upload_file
sha1: a5a260ecd7ef0a293187acea668d66e30052f4a9
sha256: 276ff3e3ae8dff94b58dae3cdbea8ba89082aa7acbb5869d8409b602b433a24b
sha512: e2bf83f136deb8ffec4129b59b436acdc7f55c0ca4da0c79189cb8e13bd3b8e87731509649ec10d1c382c364a243b26e30f53f3cfb6c34976eea55ce36475a3b
ssdeep: 3072:1j6yw1MgpQiBhGWb6esLbTh8YuyDRBFtdfGkil3O+zzqjwEbR95:1HgtEWPsL/aTyT9Gkile+zz0wEbR/
type: Composite Document File V2 Document, Little Endian, Os: Windows, Version 6.2, Code page: 1252, Title: Consequatur., Author: Ines Jacquet, Template: Normal.dotm, Revision Number: 1, Name of Creating Application: Microsoft Office Word, Create Time/Date: Fri Aug 14 08:32:00 2020, Last Saved Time/Date: Fri Aug 14 08:32:00 2020, Number of Pages: 1, Number of Words: 3, Number of Characters: 20, Security: 0

Version Info:

0: [No Data]

Generik.ETNGRDP also known as:

Elasticmalicious (high confidence)
DrWebExploit.Siggen2.20790
ClamAVDoc.Downloader.Emotet-9317583-0
FireEyeW97m.Downloader.IXN
CAT-QuickHealOLE.Emotet.38763
McAfeeRDN/Emotet
VIPRETrojan-Downloader.W97M.Agent.jc (v)
AegisLabTrojan.MSWord.Generic.4!c
K7AntiVirusTrojan ( 0056c3f41 )
K7GWTrojan ( 0056c3f41 )
SymantecTrojan.Gen.2
TrendMicro-HouseCallTrojan.W97M.POWLOAD.TIOIBEMM
AvastScript:SNH-gen [Trj]
CynetMalicious (score: 85)
KasperskyHEUR:Trojan.MSOffice.SAgent.gen
BitDefenderW97m.Downloader.IXN
ViRobotDOC.Z.Agent.232706
MicroWorld-eScanW97m.Downloader.IXN
TencentHeur.Macro.Generic.f.eb1d4db3
Ad-AwareW97m.Downloader.IXN
F-SecureMalware.W97M/Dldr.Emotet.qtraz
TrendMicroTrojan.W97M.POWLOAD.TIOIBEMM
FortinetVBA/Agent.GC!tr.dldr
SophosMal/DocDl-K
CyrenW97M/Downldr.IE.gen!Eldorado
AviraW97M/Dldr.Emotet.qtraz
Antiy-AVLTrojan[Downloader]/MSOffice.Agent
ArcabitW97m.Downloader.IXN
ZoneAlarmHEUR:Trojan.MSOffice.SAgent.gen
MicrosoftTrojanDownloader:O97M/Emotet.CSK!MTB
AhnLab-V3Downloader/MSOffice.Generic
ALYacTrojan.Downloader.DOC.Gen
ZonerProbably Heur.W97Obfuscated
ESET-NOD32a variant of Generik.ETNGRDP
RisingDownloader.Agent/VBA!1.CA83 (CLASSIC)
IkarusTrojan-Downloader.VBA.Emotet
GDataW97m.Downloader.IXN
AVGScript:SNH-gen [Trj]
Qihoo-360virus.office.qexvmc.1080

How to remove Generik.ETNGRDP?

Generik.ETNGRDP removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment