Malware

Generik.FCSHQCU removal guide

Malware Removal

The Generik.FCSHQCU is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.FCSHQCU virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Generik.FCSHQCU?


File Info:

name: C2B34C971CCF67BB1EC2.mlw
path: /opt/CAPEv2/storage/binaries/fe3d7ea508a45c0bed8879ccaaf1ac6304c399c3e49bdc547e6c6607278e8a63
crc32: 5152DD92
md5: c2b34c971ccf67bb1ec2cc2d49d4c992
sha1: 95700e47c779c5042f8b4df1a5cecb34b1890f0c
sha256: fe3d7ea508a45c0bed8879ccaaf1ac6304c399c3e49bdc547e6c6607278e8a63
sha512: c4c69867f33f16d94b15d706a3a4f0ce2f8e71399f86003e21231eff517ef0f08dfc8a210a050a116f7857506914e503ed639b97ae94c5cc8e56ad1560f52228
ssdeep: 24576:iTbBv5rUhrA/BmAlCJP7bIaZX2QNOQYYUFHPDiKz1CfozgQRjN2NaVbcTUXRlpG2:kBEAoKCJP7bIydYRx1z9jN7pcTUh7
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16085014175CCC4BCC46204316924BE31B735AD60D7A7C78AAB8CF9D99872ED2AF31366
sha3_384: 39fbd1a04ad5fa0d696d7cd571e1ab34677911fbcfc1be004375478690723ffd22ea496d952a5b39233af60b2a2b587e
ep_bytes: e866050000e978feffffcccccccccccc
timestamp: 2022-03-03 13:15:57

Version Info:

0: [No Data]

Generik.FCSHQCU also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanTrojan.GenericKD.62576387
FireEyeGeneric.mg.c2b34c971ccf67bb
CylanceUnsafe
SangforSuspicious.Win32.Save.a
AlibabaRansom:Win32/Genasom.ali1000102
Cybereasonmalicious.7c779c
ArcabitTrojan.Generic.D3BAD703
SymantecTrojan.Gen.2
Elasticmalicious (high confidence)
ESET-NOD32a variant of Generik.FCSHQCU
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-Ransom.Win32.Encoder.sfp
BitDefenderTrojan.GenericKD.62576387
AvastWin32:Evo-gen [Trj]
TencentWin32.Trojan.Encoder.Bgow
Ad-AwareTrojan.GenericKD.62576387
EmsisoftTrojan.GenericKD.62576387 (B)
DrWebTrojan.Encoder.36060
VIPRETrojan.GenericKD.62576387
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
Trapminesuspicious.low.ml.score
SophosGeneric PUA JF (PUA)
AviraTR/AD.Nekark.ngruo
MicrosoftTrojan:Win32/Leonem
GDataTrojan.GenericKD.62576387
Acronissuspicious
McAfeeArtemis!C2B34C971CCF
MAXmalware (ai score=81)
RisingRansom.Encoder!8.FFD4 (CLOUD)
FortinetW64/Filecoder.GD!tr
AVGWin32:Evo-gen [Trj]
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Generik.FCSHQCU?

Generik.FCSHQCU removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment