Malware

Generik.HNQKLMR removal instruction

Malware Removal

The Generik.HNQKLMR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.HNQKLMR virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Generik.HNQKLMR?


File Info:

name: CE17FB2AAF1C03795D40.mlw
path: /opt/CAPEv2/storage/binaries/bf8d3cf9ae32b02d1bab290fb4e0031fc1591527d8a7b7f6d0c640cabedea74c
crc32: CC61A672
md5: ce17fb2aaf1c03795d408cfa8947c440
sha1: 257e1b148678b2e7d0989b45eaa7657e9f48a10f
sha256: bf8d3cf9ae32b02d1bab290fb4e0031fc1591527d8a7b7f6d0c640cabedea74c
sha512: e83622b63ce50a385bf65c733ed5707b0df8cf8b0a2f94a1f162b03ae73bb8c18666e84dda01691205660acdf89f65ddcf202cd63db15056cab4bbf2168328bc
ssdeep: 768:h0vdNL9vUupWcNa8Zz5iQlmxruoKgPvkHVyXU:h0vdNLtUuFNa8Zz5iQlmxqoKgXk1
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FC731AA11E32481EC96E1F3677E45625E6A18889132E8B343F8CD12FEF901854E7DF57
sha3_384: 10c170735bd4bb1f46bd95657bbe23b3bd9e4cdf8991e58fa0aab4c6da127d9b773cb0853b97539cd5dc798c97c53a02
ep_bytes: 60be00d047008dbe0040f8ff57eb0b90
timestamp: 2012-05-03 13:36:24

Version Info:

0: [No Data]

Generik.HNQKLMR also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanTrojan.Agent.DQQW
McAfeeArtemis!CE17FB2AAF1C
MalwarebytesGeneric.Malware.Agent.DDS
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaGen:NN.ZexaF.36250.emW@a0O9ild
CyrenW32/Agent.EIRS-5743
SymantecSMG.Heur!gen
Elasticmalicious (high confidence)
ESET-NOD32a variant of Generik.HNQKLMR
APEXMalicious
ClamAVWin.Malware.Dqqw-9951425-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Agent.DQQW
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.Generik.e
EmsisoftTrojan.Agent.DQQW (B)
F-SecureTrojan.TR/PSW.QQSteal.boeu
VIPRETrojan.Agent.DQQW
McAfee-GW-EditionBehavesLike.Win32.Generic.lz
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.ce17fb2aaf1c0379
SophosML/PE-A
SentinelOneStatic AI – Suspicious PE
GDataWin32.Trojan.PSE.19CENXV
JiangminTrojan.Generic.hdvty
GoogleDetected
AviraTR/PSW.QQSteal.boeu
MAXmalware (ai score=87)
Antiy-AVLGrayWare/Win32.Generic
XcitiumPacked.Win32.MUPX.Gen@24tbus
ArcabitTrojan.Agent.DQQW
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Agent.R135706
ALYacTrojan.Agent.DQQW
Cylanceunsafe
RisingTrojan.Kryptik!1.BC24 (CLASSIC)
YandexTrojan.Agent!7yhb1Blv7C8
IkarusTrojan.PSW.QQSteal
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/ULPM.2C75!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.aaf1c0
DeepInstinctMALICIOUS

How to remove Generik.HNQKLMR?

Generik.HNQKLMR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment