Malware

Generik.FGVMSCJ (file analysis)

Malware Removal

The Generik.FGVMSCJ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.FGVMSCJ virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Generik.FGVMSCJ?


File Info:

name: 42DEA5D630059BE16B43.mlw
path: /opt/CAPEv2/storage/binaries/ea06c533b39d631c411b2ac35dcadd0b8fd03dbf84f4bb3d298bf4dbbb890f97
crc32: 88578AA2
md5: 42dea5d630059be16b4306f7b577ec2c
sha1: 0dd323e062453eebf2d8181784c7499b16bd7a60
sha256: ea06c533b39d631c411b2ac35dcadd0b8fd03dbf84f4bb3d298bf4dbbb890f97
sha512: 1e8e8d003dfeea6a661b84c5d6c874646c9a10d3dddc7b4254231fed07f939016bcb12bb5c3e4df584450dab84b4d89fb7b77eca71158c67073cac2e83d1afbd
ssdeep: 24576:9ULzN0e97wWzjDcqDZ+wmEc/3Y8zTn7SzmlTOjz36:9UF0MwW4qDZ+v/vzTnMSO6
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12605D011BBC0C072C66235318E4AD6BAB7EAAC715D3607077BD12F3D6F381A1893975A
sha3_384: 075e0a6d32340907317580a9561ebf664d8adc9095dc9a54391549ae5e56dbb0ba90b3d49e26061849b940f7f6d3f3da
ep_bytes: e82d880000e978feffff8bff558bec6a
timestamp: 2019-03-30 01:00:43

Version Info:

CompanyName: SetSecurityInfoT pSetSecurityInfo=(SetSecurityInfoT)GetProcAddress(LoadLibrary("ADVAPI32.dll"),uNEZYdb);
FileDescription: Steam Client API
FileVersion: 1, 0, 0, 1
InternalName: Steam Client API
LegalCopyright: Copyright (C) 2007
OriginalFilename: steam_api.dll
ProductName: Steam Client API
ProductVersion: 1, 0, 0, 1
Translation: 0x0804 0x04b0

Generik.FGVMSCJ also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanTrojan.GenericKD.37475007
FireEyeTrojan.GenericKD.37475007
SkyhighBehavesLike.Win32.Generic.bc
ALYacTrojan.GenericKD.37475007
ZillyaTrojan.Inject.Win32.290199
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0056e6e31 )
BitDefenderTrojan.GenericKD.37475007
K7GWTrojan ( 0056e6e31 )
Cybereasonmalicious.062453
SymantecTrojan.Gen.MBT
Elasticmalicious (high confidence)
ESET-NOD32a variant of Generik.FGVMSCJ
APEXMalicious
CynetMalicious (score: 100)
RisingMalware.Undefined!8.C (CLOUD)
SophosMal/Generic-S
DrWebTrojan.Inject3.13584
VIPRETrojan.GenericKD.37475007
EmsisoftTrojan.GenericKD.37475007 (B)
IkarusTrojan.Win32.Krypt
Antiy-AVLTrojan/Win32.Inject
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Generic.D23BD2BF
GDataTrojan.GenericKD.37475007
GoogleDetected
AhnLab-V3Trojan/Win32.Inject.C3133801
McAfeeGenericRXAA-AA!42DEA5D63005
MAXmalware (ai score=84)
DeepInstinctMALICIOUS
Cylanceunsafe
TencentMalware.Win32.Gencirc.10b684d7
SentinelOneStatic AI – Malicious PE
FortinetW32/PossibleThreat
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Generik.FGVMSCJ?

Generik.FGVMSCJ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment