Malware

Generik.FFGAQQY removal

Malware Removal

The Generik.FFGAQQY is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.FFGAQQY virus can do?

  • Starts servers listening on 127.0.0.1:64981
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Installs Tor on the infected machine

How to determine Generik.FFGAQQY?


File Info:

crc32: 0083E33B
md5: f48dab7fa74c87b2b5d5f66259ae85a3
name: F48DAB7FA74C87B2B5D5F66259AE85A3.mlw
sha1: 1175d1824732673c7bfce83e06346cc1f44e5d66
sha256: 706d5146f3080d78b751b2b020cef50c6011bb5a52c08b2087af144b53a888c9
sha512: 970a804f4f97c0bd0fc5aad1f8a7068bc694f172e8454a5f1f64014a12f214a5d48552a4c137d83c7d2322d80aea3ca35f402375e9c2d7324d8d60655c7d5af9
ssdeep: 24576:OBIgG++NOtCrvrSDa39n5B2/KCnHkWhnR7Qt:OBsOkrvuC5B2/KCnznR7G
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Generik.FFGAQQY also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0056e68c1 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Heur.Ransom.Shade.1
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaTrojan:Win32/RansomShade.70cbe772
K7GWTrojan ( 0056e68c1 )
Cybereasonmalicious.fa74c8
BaiduWin32.Trojan.FileCoder.b
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.FFGAQQY
APEXMalicious
AvastWin32:RansomShade-D [Trj]
Kasperskynot-a-virus:HEUR:NetTool.Win32.Generic
BitDefenderGen:Heur.Ransom.Shade.1
NANO-AntivirusTrojan.Win32.JP.extidq
MicroWorld-eScanGen:Heur.Ransom.Shade.1
TencentWin32.Trojan.Heur.Ectx
Ad-AwareGen:Heur.Ransom.Shade.1
SophosMal/Generic-S
ComodoApplicUnwnt@#1wqm13akqihys
BitDefenderThetaGen:NN.ZexaF.34678.WmGfa47uwIm
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
FireEyeGeneric.mg.f48dab7fa74c87b2
EmsisoftGen:Heur.Ransom.Shade.1 (B)
SentinelOneStatic AI – Suspicious PE
JiangminNetTool.Generic.dx
AviraHEUR/AGEN.1122951
MicrosoftTrojan:Win32/Occamy.B
AegisLabRiskware.Win32.TorJok.1!c
GDataGen:Heur.Ransom.Shade.1
AhnLab-V3Trojan/Win32.FileCoder.C2400278
Acronissuspicious
McAfeeArtemis!F48DAB7FA74C
MAXmalware (ai score=99)
VBA32BScope.Trojan.Tiggre
PandaTrj/GdSda.A
RisingTrojan.GenKryptik!8.AA55 (CLOUD)
IkarusTrojan-Ransom.Troldesh
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Generik.FFGAQQY!tr
AVGWin32:RansomShade-D [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Generic.HxIBEpsA

How to remove Generik.FFGAQQY?

Generik.FFGAQQY removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment