Malware

Generik.FELUPZB (file analysis)

Malware Removal

The Generik.FELUPZB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.FELUPZB virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Mimics the system’s user agent string for its own requests
  • Expresses interest in specific running processes
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

How to determine Generik.FELUPZB?


File Info:

crc32: 4515F2EE
md5: 0d3412e852737ead689181f126414252
name: 0D3412E852737EAD689181F126414252.mlw
sha1: fb5493adc49c2d142070a2a8199dda13260278fe
sha256: 839eb3b61d50ab4920f885077b5e720ae1233c6a5d484e83c94236744abc9635
sha512: 632dd45d0e0ac311c1ffc7dc4aa33c3378f7bf39b532669139b05dff295570b4068e8d9f4c82fdd217d67c2000764e6891789cb07cad7c9fbb8bfff54cbb2531
ssdeep: 3072:qNnz+ypIRDbYiwEs+lJVsZVWTIDkHkr3UiZH4bgVIcyIWfwUgNpqaCjV+bIDkwx:FyWRDOhoImq3h6mjvUgrcVgID4Ux
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generik.FELUPZB also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.45149386
FireEyeGeneric.mg.0d3412e852737ead
CAT-QuickHealBackdoor.Emotet
McAfeeRDN/Emotet
CylanceUnsafe
AegisLabTrojan.Win32.Emotet.L!c
SangforMalware
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderTrojan.GenericKD.45149386
K7GWTrojan ( 0057530f1 )
K7AntiVirusTrojan ( 0057530f1 )
CyrenW32/Emotet.AZE.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:CrypterX-gen [Trj]
KasperskyHEUR:Backdoor.Win32.Emotet.gen
AlibabaTrojan:Win32/EmotetCrypt.a5dd3add
ViRobotTrojan.Win32.Z.Emotet.219648.CL
RisingTrojan.Kryptik!1.D06E (CLASSIC)
Ad-AwareTrojan.GenericKD.45149386
SophosMal/Generic-S
F-SecureTrojan.TR/AD.Emotet.hvcaz
TrendMicroTROJ_GEN.R002C0DLT20
McAfee-GW-EditionBehavesLike.Win32.CryptDoma.dc
EmsisoftTrojan.GenericKD.45149386 (B)
SentinelOneStatic AI – Malicious PE
JiangminBackdoor.Emotet.vc
AviraTR/AD.Emotet.hvcaz
Antiy-AVLTrojan/Win32.Generic
MicrosoftTrojan:Win32/EmotetCrypt.ARJ!MTB
GridinsoftTrojan.Win32.Emotet.oa
ArcabitTrojan.Generic.D2B0ECCA
ZoneAlarmHEUR:Backdoor.Win32.Emotet.gen
GDataTrojan.GenericKD.45149386
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R360499
ALYacTrojan.GenericKD.45149386
MAXmalware (ai score=88)
VBA32Trojan.Emotet
MalwarebytesTrojan.Emotet
PandaTrj/CI.A
ESET-NOD32a variant of Generik.FELUPZB
TrendMicro-HouseCallTROJ_GEN.R002C0DLT20
TencentMalware.Win32.Gencirc.10ce2f24
IkarusTrojan-Banker.Emotet
FortinetW32/Emotet.AZE!tr
AVGWin32:CrypterX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Generic/Trojan.3ae

How to remove Generik.FELUPZB?

Generik.FELUPZB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment