Categories: Malware

Generik.FGBUCTK removal guide

The Generik.FGBUCTK is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.FGBUCTK virus can do?

  • At least one process apparently crashed during execution
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Generik.FGBUCTK?


File Info:

name: E79BA09F835BD417C757.mlwpath: /opt/CAPEv2/storage/binaries/3c90b609c1cb03b7537eba9bb9b8c931d989a109f181b39b628f1f92b272aa62crc32: 07CA8DBAmd5: e79ba09f835bd417c757793826109330sha1: 35c91626db042a08d0a350967cb777d4043e707esha256: 3c90b609c1cb03b7537eba9bb9b8c931d989a109f181b39b628f1f92b272aa62sha512: 439480dd21982b48cac9c6ad1e2bf6a1b9d672ffb659527d60cce2fe0ad268114d562b7ad29b333283ebe81d26ff0bf1f0ca8101b324d0539fa8be467ebc3413ssdeep: 6144:pXEL1goekpaIkUUoEY+ifIhGbnkG+LvgaVdrZNxpYkZoSU:pX5kp6bY6h9Z/ToSUtype: PE32 executable (GUI) Intel 80386, for MS Windowstlsh: T1A884E9A280C9E832E9232AB44F24A9CF65D130FDFD935CF2BF997159BAC05501ED12D6sha3_384: 99f3d7ab62e3bd94bb86e4b22d22b5c3c1b61614e36075afd852fd11d963f7f8989aaf7767c975442b1539a6697ba58dep_bytes: e80aeefdffe9d9feffff000000000000timestamp: 2011-06-19 13:13:25

Version Info:

CompanyName: Orb NetworksFileDescription: Banks Dais PrideFileVersion: 2.9InternalName: Leg Ajax NameLegalCopyright: Idols 2004-2010OriginalFilename: Duly.exeProductName: CackleProductVersion: 2.9Translation: 0x0409 0x04b0

Generik.FGBUCTK also known as:

Bkav W32.AIDetect.malware1
Lionic Trojan.Win32.Generic.4!c
Elastic malicious (high confidence)
MicroWorld-eScan Gen:Variant.Kazy.61204
FireEye Generic.mg.e79ba09f835bd417
ALYac Gen:Variant.Kazy.61204
Cylance Unsafe
VIPRE Trojan.Win32.Reveto.D (v)
Sangfor Suspicious.Win32.Save.a
K7AntiVirus Trojan ( 004bcce41 )
BitDefender Gen:Variant.Kazy.61204
K7GW Trojan ( 004bcce41 )
CrowdStrike win/malicious_confidence_100% (W)
Cyren W32/Zbot.DP.gen!Eldorado
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Generik.FGBUCTK
APEX Malicious
Kaspersky HEUR:Trojan.Win32.Generic
Alibaba Trojan:Win32/EncPk.0995cc68
NANO-Antivirus Trojan.Win32.MlwGen.pmogh
Rising Trojan.Crypto!8.364 (CLOUD)
Ad-Aware Gen:Variant.Kazy.61204
Sophos Mal/Generic-R + Mal/EncPk-ABFO
Comodo Packed.Win32.MUPX.Gen@24tbus
DrWeb Trojan.Packed.2294
Zillya Trojan.Generic.Win32.26489
TrendMicro TROJ_FRS.0NA103BL20
McAfee-GW-Edition PWS-Zbot.gen.bdw
Emsisoft Gen:Variant.Kazy.61204 (B)
Ikarus Worm.Socks
Jiangmin Trojan/Generic.yljb
Webroot W32.Trojan.Gen
Avira TR/Crypt.ZPACK.Gen
MAX malware (ai score=100)
Antiy-AVL Trojan/Generic.ASMalwS.48F38F
Gridinsoft Ransom.Win32.Zbot.sa
Microsoft Trojan:Win32/Occamy.C3C
SUPERAntiSpyware Trojan.Agent/Gen-Faker[desc]
GData Gen:Variant.Kazy.61204
Cynet Malicious (score: 100)
AhnLab-V3 Spyware/Win32.Zbot.R19830
Acronis suspicious
McAfee PWS-Zbot.gen.bdw
VBA32 BScope.Trojan.Packed
Malwarebytes Malware.AI.1722719767
Panda Generic Malware
TrendMicro-HouseCall TROJ_FRS.0NA103BL20
Tencent Malware.Win32.Gencirc.116afc47
Yandex Trojan.GenAsa!N4WE4+AgMn8
SentinelOne Static AI – Malicious PE
eGambit Generic.Malware
Fortinet W32/Kryptik.ABC!tr
BitDefenderTheta Gen:NN.ZexaF.34232.xm1@aWDmUmki
AVG Win32:Reveton-Y [Trj]
Cybereason malicious.f835bd
Avast Win32:Reveton-Y [Trj]
MaxSecure Trojan.Malware.2588.susgen

How to remove Generik.FGBUCTK?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

How to remove “Trojan:Win32/AutoitInject.RE!MTB”?

The Trojan:Win32/AutoitInject.RE!MTB is considered dangerous by lots of security experts. When this infection is active,…

36 seconds ago

Worm.VobfusVMF.S19740081 information

The Worm.VobfusVMF.S19740081 is considered dangerous by lots of security experts. When this infection is active,…

6 mins ago

Malware.AI.986323659 removal guide

The Malware.AI.986323659 is considered dangerous by lots of security experts. When this infection is active,…

17 mins ago

Generic.Dacic.1636.DB5B5110 removal

The Generic.Dacic.1636.DB5B5110 is considered dangerous by lots of security experts. When this infection is active,…

22 mins ago

Application.Application.Graftor.406603 (B) (file analysis)

The Application.Application.Graftor.406603 (B) is considered dangerous by lots of security experts. When this infection is…

31 mins ago

Generic.Dacic.1A7FA519.A.F5972732 removal instruction

The Generic.Dacic.1A7FA519.A.F5972732 is considered dangerous by lots of security experts. When this infection is active,…

42 mins ago