Malware

Generik.GIZLTSE information

Malware Removal

The Generik.GIZLTSE is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.GIZLTSE virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Arabic (Uae)
  • Looks up the external IP address
  • Behavior consistent with a dropper attempting to download the next stage.
  • A process sent information about the computer to a remote location.
  • Anomalous binary characteristics

Related domains:

api.ipify.org
madmilons.com
counteent.ru

How to determine Generik.GIZLTSE?


File Info:

crc32: C2C4844E
md5: 7d947a3d37f370b12fec5f1df82dfd1e
name: 7D947A3D37F370B12FEC5F1DF82DFD1E.mlw
sha1: e5999fccef4769c0c7ae66b9ec6eaaf7c3326c46
sha256: bb3cfed0b433c158af3238573507836cd6c42a40240852a0ae22bcfd48038b8c
sha512: 9bf47cbfa989cbd55e48675b83799559cc7ffa40023520dfe072d4889872abe341d099e9915d96b7c5ef0aea05e554ec58dd0f91e3b0324f53d922dbd09b675f
ssdeep: 12288:holXVy6UibVx/dxXgDynQj3EKML/7k3mfdwgbwmoCcwciVVVV2D+03h:mllwIxXgD4U3EKML+4wm9cwuN
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generik.GIZLTSE also known as:

LionicTrojan.Win32.Generic.l6Vk
Elasticmalicious (high confidence)
DrWebTrojan.Chanitor.59
ALYacTrojan.Agent.Hancitor
CylanceUnsafe
SangforTrojan.Win32.Hancitor.gen
K7AntiVirusRiskware ( 0040eff71 )
CyrenW32/Qbot.DG.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.GIZLTSE
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Hancitor.gen
BitDefenderTrojan.GenericKD.46825151
ViRobotTrojan.Win32.S.Agent.819712.CW
MicroWorld-eScanTrojan.GenericKD.46825151
TencentWin32.Trojan.Hancitor.Akzc
Ad-AwareTrojan.GenericKD.46825151
SophosMal/EncPk-APY
ComodoTrojWare.Win32.Agent.wmakh@0
TrendMicroTROJ_FRS.0NA103HJ21
McAfee-GW-EditionBehavesLike.Win32.Worm.ch
FireEyeGeneric.mg.7d947a3d37f370b1
EmsisoftTrojan.GenericKD.46825151 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Malware.Gen
AviraTR/AD.ZDlder.vmdsg
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Hancitor.VAM!MTB
ZoneAlarmHEUR:Trojan.Win32.Hancitor.gen
GDataWin32.Trojan.Kryptik.4XOTXA
AhnLab-V3Trojan/Win.Generic.R437877
McAfeeArtemis!7D947A3D37F3
MAXmalware (ai score=88)
VBA32BScope.Trojan.Hancitor
MalwarebytesMalware.AI.3848947555
TrendMicro-HouseCallTROJ_FRS.0NA103HJ21
IkarusTrojan.SuspectCRC
FortinetW32/PossibleThreat
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Generik.GIZLTSE?

Generik.GIZLTSE removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment