Malware

Should I remove “Generik.FNLPFO”?

Malware Removal

The Generik.FNLPFO is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.FNLPFO virus can do?

  • A process attempted to delay the analysis task.
  • The binary likely contains encrypted or compressed data.
  • Looks up the external IP address

Related domains:

www.whatismyip.org
automation.whatismyip.com
myip.dnsomatic.com
checkip.dyndns.org
ysb-ewb.webbridge.net

How to determine Generik.FNLPFO?


File Info:

crc32: 206C5F49
md5: 375eaf209812fb553d1fc24d9c199c3d
name: ysb88.exe
sha1: 39ea4d3e1f46b1ccceeece6713f4dd11db16f292
sha256: 8a5485b5b1b524d5201dbafe4c0856ad3e5b4b809b85302fc38dfc14b06ea2f8
sha512: d330d437c28196a9eb122e4eae8b1e0149fe55d9ff559707d5b6881b4bc6e9d207ac16200e3a1ed34ae153f1c3ba64e63552de4346591614c28e3165d0c1f8c7
ssdeep: 196608:VkZRd36aVbJeMKVijS4ERBCCKQwT/7QpfCUg86xs3o:W/wij0CCKQwTDQFCbhxsY
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: TODO: (c) . All rights reserved.
InternalName: YSB88.exe
FileVersion: 1.0.0.1
CompanyName: TODO:
ProductName: TODO:
ProductVersion: 1.0.0.1
FileDescription: TODO:
OriginalFilename: YSB88.exe
Translation: 0x0409 0x04e4

Generik.FNLPFO also known as:

MicroWorld-eScanTrojan.GenericKD.31136811
FireEyeTrojan.GenericKD.31136811
McAfeeArtemis!375EAF209812
CylanceUnsafe
ZillyaTrojan.Reconyc.Win32.21796
BitDefenderTrojan.GenericKD.31136811
Cybereasonmalicious.09812f
SymantecTrojan.Gen.MBT
AvastWin32:Malware-gen
GDataTrojan.GenericKD.31136811
KasperskyTrojan.Win32.Reconyc.jbdk
AlibabaTrojan:Win32/Reconyc.3a722b2f
NANO-AntivirusTrojan.Win32.Reconyc.ftvuui
AegisLabTrojan.Win32.Reconyc.4!c
Endgamemalicious (high confidence)
SophosMal/Generic-S
ComodoMalware@#3h4bws4nix9gl
F-SecureTrojan.TR/Reconyc.keirb
McAfee-GW-EditionArtemis!Trojan
MaxSecureTrojan.Malware.1728101.susgen
EmsisoftTrojan.GenericKD.31136811 (B)
IkarusTrojan.Reconyc
AviraTR/Reconyc.keirb
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.Reconyc
MicrosoftTrojan:Win32/Occamy.C
ArcabitTrojan.Generic.D1DB1C2B
ZoneAlarmTrojan.Win32.Reconyc.jbdk
AhnLab-V3Malware/Win32.Generic.C2622713
ALYacTrojan.GenericKD.31136811
VBA32BScope.Trojan.Reconyc
PandaTrj/GdSda.A
ESET-NOD32a variant of Generik.FNLPFO
TencentWin32.Trojan.Reconyc.Ljko
YandexTrojan.Reconyc!
FortinetW32/Reconyc.JBDK!tr
Ad-AwareTrojan.GenericKD.31136811
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Generik.FNLPFO?

Generik.FNLPFO removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment