Malware

What is “Generik.FOUOUZY”?

Malware Removal

The Generik.FOUOUZY is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.FOUOUZY virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Generik.FOUOUZY?


File Info:

name: 9311ABA09FFF9B7EAF5D.mlw
path: /opt/CAPEv2/storage/binaries/8579912b7cf254d3a3d238a24ee3e7e63999f9ef24d242cfc58d750c50db22cc
crc32: AE9E597C
md5: 9311aba09fff9b7eaf5dace821f13566
sha1: 229e0725c79747dddcdea57f2d0ae6c56495fc52
sha256: 8579912b7cf254d3a3d238a24ee3e7e63999f9ef24d242cfc58d750c50db22cc
sha512: 694b4b83a349657adcbefc2b1d225e4a698be54294b39c4078dec7681515239d7e700e783d67b9c74f2443e29dbe9e297c6e52eb758bab54d586cb9cdfc795f2
ssdeep: 96:bOsGZ6S+ybUgWQas9+GdA+eqEndTW2myvS7mUKlcnLntD12eQc6OYsEu16mE:bE/W705+64DUycnLntD8hWIuEh
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17BB2D7D253D0502BE19F75342F33CB6A09E77C408B75BA46FA653F6D78B261A0938741
sha3_384: 9870c00ea8e183c6b6d215da98aae7cc546b4a6b032dd82bf9b282fa3ba1b85ef0755d5d1d95a0c00d75436e329d5638
ep_bytes: 68f4104000e8f0ffffff000000000000
timestamp: 2010-07-25 10:01:28

Version Info:

CompanyName: SpyEye Corp.
FileDescription: Builder for SpyEye bot
FileVersion: 1.0.0.1
InternalName: builder.exe
LegalCopyright: (c) SpyEye Corp.. All rights reserved.
OriginalFilename: builder.exe
ProductName: TODO: SpyEye
ProductVersion: 1.0.0.1
Translation: 0x0409 0x04b0

Generik.FOUOUZY also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.VBKrypt.4!c
MicroWorld-eScanTrojan.GenericKD.36776901
FireEyeGeneric.mg.9311aba09fff9b7e
ALYacTrojan.GenericKD.36776901
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Generik.FOUOUZY
K7AntiVirusRiskware ( 0040eff71 )
AlibabaTrojan:Win32/VBKrypt.95256d64
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_60% (W)
CyrenW32/Trojan.ZKFI-4440
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.FOUOUZY
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.Agent-252952
KasperskyTrojan.Win32.VBKrypt.ibl
BitDefenderTrojan.GenericKD.36776901
NANO-AntivirusTrojan.Win32.VBKrypt.btelnq
AvastWin32:Trojan-gen
TencentWin32.Trojan.Vbkrypt.cdsb
SophosMal/Generic-S
ComodoMalware@#m2bl3yik3xch
DrWebTrojan.MulDrop3.60143
ZillyaTrojan.VBKrypt.Win32.42846
McAfee-GW-EditionBehavesLike.Win32.Trojan.mz
EmsisoftTrojan.GenericKD.36776901 (B)
IkarusTrojan.Dropper
JiangminTrojan/VBKrypt.ieyt
WebrootW32.Orsam.Gen
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Generic.ASMalwS.586D6
KingsoftWin32.Troj.VBKrypt.i.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmTrojan.Win32.VBKrypt.ibl
GDataTrojan.GenericKD.36776901
CynetMalicious (score: 100)
McAfeeGenericRXAA-FA!9311ABA09FFF
MAXmalware (ai score=98)
VBA32Trojan.VBRA.06306
MalwarebytesTrojan.SpyEyes
RisingDropper.Generic!8.35E (CLOUD)
YandexTrojan.GenAsa!84QStfHwlTM
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.1478961.susgen
FortinetW32/VBKrypt.IBL!tr
BitDefenderThetaGen:NN.ZevbaF.34182.bm0@aCw@MNii
AVGWin32:Trojan-gen
PandaTrj/CI.A

How to remove Generik.FOUOUZY?

Generik.FOUOUZY removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment