Malware

Generik.HMPQCMF (file analysis)

Malware Removal

The Generik.HMPQCMF is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.HMPQCMF virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Executed a very long command line or script command which may be indicative of chained commands or obfuscation
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Uses suspicious command line tools or Windows utilities

How to determine Generik.HMPQCMF?


File Info:

crc32: 22FE1ACB
md5: c71bcd68d7bbcd4f9d8e8d9e26eba918
name: C71BCD68D7BBCD4F9D8E8D9E26EBA918.mlw
sha1: 3180710dfed0b2a11afce0b5d486aba188743370
sha256: 17514b3b097e22e2fd203cc0a909102e45f7a21c220342e14251e73cc82fda89
sha512: 8087f58dccb1f1c3387ead56403c53820cf875561817d59295515a11729b548924fe3e122e74590b4e322fed41547cb488891b13cf768db7bf85cb927cf50b16
ssdeep: 12288:q9UPHFtPUX+tG2ZI+mWEOE0XS7/btbJJ7h1D/0znqcbPfJb3wJ/4qONNqxrP1G9A:q9qFtP8Q707DLMnqcb5ub551GTN82U
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generik.HMPQCMF also known as:

BkavW32.AIDetect.malware2
CynetMalicious (score: 100)
CAT-QuickHealProgram.Wacapew
ALYacTrojan.GenericKD.46506603
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaTrojan:Win32/SuspectCRC.b967ca04
Cybereasonmalicious.dfed0b
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Generik.HMPQCMF
ZonerProbably Heur.RARAutorun
APEXMalicious
AvastWin32:Trojan-gen
BitDefenderTrojan.GenericKD.46506603
MicroWorld-eScanTrojan.GenericKD.46506603
Ad-AwareTrojan.GenericKD.46506603
SophosMal/Generic-S (PUA)
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Suspicioustrojan.tc
FireEyeGeneric.mg.c71bcd68d7bbcd4f
EmsisoftTrojan.GenericKD.46506603 (B)
SentinelOneStatic AI – Suspicious PE
WebrootW32.Trojan.Gen
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/Wacatac.A!ml
AegisLabTrojan.Win32.Blocker.tqAl
GDataTrojan.GenericKD.46506603
McAfeeArtemis!C71BCD68D7BB
MAXmalware (ai score=86)
TrendMicro-HouseCallTROJ_GEN.R002H0CFI21
IkarusTrojan.SuspectCRC
FortinetMalicious_Behavior.SB
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Generik.HMPQCMF?

Generik.HMPQCMF removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment