Malware

About “Generik.HNJYXPB” infection

Malware Removal

The Generik.HNJYXPB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.HNJYXPB virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine Generik.HNJYXPB?


File Info:

name: C105F2AEEA4B4CCB6959.mlw
path: /opt/CAPEv2/storage/binaries/22efe71fabc35509b2b51f6bd8b3383a979ab4a7e083b9c1436b0facd8bb5243
crc32: 7C127661
md5: c105f2aeea4b4ccb6959b70a8bef5812
sha1: abf27b5ede11d6bdfd00e458880906ca66e2b65b
sha256: 22efe71fabc35509b2b51f6bd8b3383a979ab4a7e083b9c1436b0facd8bb5243
sha512: b1825b58384f5a4ad2fd2297ca9957fe359c580b1655cc6b14a7dbadcacb67a180c3c767f86cf555a27003903784aac2edc247271f1721aa4c4878458ec9cc62
ssdeep: 48:6BcGBgYl5mksoUyFWoYFldw5uulLgx3fqXSfbNtm:WVhUSYF+Jgx3RzNt
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BC81A542B7E85367F1B6437449F38711B2B8FA50CD76876E2C94131E6C207348A53BB1
sha3_384: 45ee14d119e09bbeee054acb97896c2d66c24677678f91a82fe4e46bbb0d8e1d21f2ebb77fef5ef0bb2ec34c45da020d
ep_bytes: ff250020400000000000000000000000
timestamp: 2018-01-22 19:08:19

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: tmpE594.tmp
LegalCopyright:
OriginalFilename: tmpE594.tmp
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

Generik.HNJYXPB also known as:

CylanceUnsafe
ZillyaTrojan.AgentGen.Win32.75
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/Trojan.BNA.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.HNJYXPB
APEXMalicious
Paloaltogeneric.ml
NANO-AntivirusTrojan.Win32.Generic.explyt
AvastFileRepMalware
SophosMal/Generic-S
ComodoMalware@#28iby37624xze
VIPRETrojan.Win32.Generic!BT
TrendMicroRANSOM_CRYPWANNACRYPT_HA17000F.UVPM
McAfee-GW-EditionBehavesLike.Win32.Generic.xz
IkarusTrojan.Clicker
MAXmalware (ai score=95)
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftTrojan:Win32/Wacatac.B!ml
McAfeeArtemis!C105F2AEEA4B
VBA32Trojan.Occamy
MalwarebytesTrojan.Crypt
TrendMicro-HouseCallRANSOM_CRYPWANNACRYPT_HA17000F.UVPM
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_93%
FortinetMSIL/Bulz.9ECC!tr
BitDefenderThetaGen:NN.ZemsilF.34294.am0@aSZtGZh
AVGFileRepMalware
PandaTrj/CI.A
MaxSecureTrojan.Malware.300983.susgen

How to remove Generik.HNJYXPB?

Generik.HNJYXPB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment