Malware

Generik.GGCBPRK malicious file

Malware Removal

The Generik.GGCBPRK is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.GGCBPRK virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • CAPE detected the Guloader malware family
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generik.GGCBPRK?


File Info:

name: 7F692A8C47A60E1DFBE4.mlw
path: /opt/CAPEv2/storage/binaries/49d0a353b3e5ba0770321aa0fbec74b749fc0b7e187b5f5734fd58b1c16b3464
crc32: 751C4E74
md5: 7f692a8c47a60e1dfbe41125641a014f
sha1: a2880ad7902a225dd61a63ae055a6ba3bd961fa6
sha256: 49d0a353b3e5ba0770321aa0fbec74b749fc0b7e187b5f5734fd58b1c16b3464
sha512: ba953a1a308385fba806de62b3ac1e1070870519a5d2f375de0dd3321cf34553dde5a1d75950771c4883d048b9764fd157581172b47aed0c00657a3f05b2c2a3
ssdeep: 768:sOg3o3AAm9xJiNUGmmnYhwpFQmR4FSmOpikAz8a3J3:G9fQYhMFQ0qSmXkL
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1DC534B0762BDB879C06C02F2251743FC9432FE312A96CE4B6C915D5F7D7AE46B06A31A
sha3_384: d14ac8a2a0f3da9b37c66e653907abe7db3020ce13fa6034e2d04e2d2a21ad32885972a29e09c3d85926ae1398a55459
ep_bytes: 68fc894000e8eeffffff000000000000
timestamp: 2020-04-22 09:16:56

Version Info:

Translation: 0x0409 0x04b0
Comments: Stereoscopic algo
CompanyName: Stereoscopic algo
ProductName: Stereoscopic algo
FileVersion: 1.01
ProductVersion: 1.01
InternalName: REDEGO
OriginalFilename: REDEGO.exe

Generik.GGCBPRK also known as:

BkavW32.AIDetectMalware
LionicTrojan.Multi.Generic.4!c
MicroWorld-eScanGen:Heur.PonyStealer.dm0@rSJD57ii
FireEyeGeneric.mg.7f692a8c47a60e1d
McAfeeFareit-FSW!7F692A8C47A6
Cylanceunsafe
ZillyaTrojan.Vebzenpak.Win32.2347
SangforTrojan.Win32.Vebzenpak.Vouh
K7AntiVirusRiskware ( 0040eff71 )
AlibabaTrojan:Win32/Vebzenpak.66e239b2
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZevbaF.36662.dm0@aSJD57ii
VirITTrojan.Win32.VBZenPack_Heur
CyrenW32/VBKrypt.AIQ.gen!Eldorado
SymantecPacked.Generic.575
Elasticmalicious (high confidence)
ESET-NOD32a variant of Generik.GGCBPRK
APEXMalicious
CynetMalicious (score: 99)
KasperskyTrojan.Win32.Vebzenpak.llo
BitDefenderGen:Heur.PonyStealer.dm0@rSJD57ii
NANO-AntivirusTrojan.Win32.Vebzenpak.isvyfy
TencentWin32.Trojan.Vebzenpak.Dnhl
EmsisoftGen:Heur.PonyStealer.dm0@rSJD57ii (B)
F-SecureHeuristic.HEUR/AGEN.1333971
DrWebTrojan.DownLoader33.35412
VIPREGen:Heur.PonyStealer.dm0@rSJD57ii
McAfee-GW-EditionFareit-FSW!7F692A8C47A6
SophosMal/FareitVB-AC
GDataGen:Heur.PonyStealer.dm0@rSJD57ii
JiangminTrojan.Vebzenpak.clx
WebrootW32.Gen.BT
AviraHEUR/AGEN.1333971
Antiy-AVLTrojan/Win32.Emali
XcitiumMalware@#1pw59lnfo5w13
ArcabitTrojan.PonyStealer.EB24AA
ZoneAlarmTrojan.Win32.Vebzenpak.llo
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
AhnLab-V3Trojan/Win32.Fareit.R336313
VBA32BScope.Trojan.Wacatac
ALYacGen:Heur.PonyStealer.dm0@rSJD57ii
MAXmalware (ai score=85)
DeepInstinctMALICIOUS
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/Downloader.FUM
RisingTrojan.Emali!8.10004 (CLOUD)
YandexTrojan.Igent.bTZMDs.5
IkarusTrojan.VB.Crypt
MaxSecureTrojan.Malware.74790527.susgen
FortinetW32/GuLoader.VHJQ!tr
AVGWin32:DropperX-gen [Drp]
AvastWin32:DropperX-gen [Drp]

How to remove Generik.GGCBPRK?

Generik.GGCBPRK removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment