Malware

What is “Generik.HZUZXYA”?

Malware Removal

The Generik.HZUZXYA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.HZUZXYA virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Sanskrit
  • The binary likely contains encrypted or compressed data.
  • Checks for the presence of known windows from debuggers and forensic tools
  • Checks the version of Bios, possibly for anti-virtualization
  • Detects VirtualBox through the presence of a registry key
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

How to determine Generik.HZUZXYA?


File Info:

crc32: 241D556D
md5: 8f7eec9157231913c806559df872b753
name: 8F7EEC9157231913C806559DF872B753.mlw
sha1: ebbe9faed343dbb2a176dad28c7ece90ff04e07a
sha256: 0f0eb4a8a538f339214f86a8b084d685a4fb51d54f258f5718393003ab1ff35b
sha512: 488591779159cdbd6220b59f807162e5402e0968f57f39c1ae1a83b602fcfd825e2732f12e94dba3edb4eedd5f4c868631010e4e10188818ca975aca08f462ad
ssdeep: 98304:DTrrzhIZrmgd5T7cSkCyEF6MzchzvPgfAMgSwEmWvzQkT/PjMg:HrrqZqc5T7fTYNTgfZwEmEt7
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2021
Assembly Version: 1.0.0.0
InternalName: Mamx686x628x647x6267x6212x6af.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: DistractMe
ProductVersion: 1.0.0.0
FileDescription: DistractMe
OriginalFilename: Mamx686x628x647x6267x6212x6af.exe

Generik.HZUZXYA also known as:

BkavW32.AIDetect.malware1
K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
DrWebTrojan.Siggen12.35388
ALYacTrojan.GenericKD.45881038
CylanceUnsafe
SangforVirus_Suspicious.Win32.Sality.ae
CrowdStrikewin/malicious_confidence_80% (W)
AlibabaTrojanPSW:Win32/Racealer.f6aed6f6
K7GWRiskware ( 0040eff71 )
CyrenW32/MSIL_Kryptik.DMD.gen!Eldorado
ESET-NOD32a variant of Generik.HZUZXYA
APEXMalicious
AvastWin32:Trojan-gen
KasperskyTrojan-PSW.Win32.Racealer.kto
BitDefenderTrojan.GenericKD.36489579
MicroWorld-eScanTrojan.GenericKD.36489579
TencentWin32.Trojan-qqpass.Qqrob.Edyc
Ad-AwareTrojan.GenericKD.36489579
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34608.@30@aOt4bFcG
McAfee-GW-EditionBehavesLike.Win32.Dropper.tc
FireEyeGeneric.mg.8f7eec9157231913
EmsisoftTrojan.GenericKD.36489579 (B)
SentinelOneStatic AI – Malicious PE
MicrosoftTrojan:Win32/Caynamer.A!ml
GridinsoftTrojan.Heur!.03214221
ArcabitTrojan.Generic.D22CC96B
AegisLabTrojan.Win32.Racealer.i!c
ZoneAlarmTrojan-PSW.Win32.Racealer.kto
GDataTrojan.GenericKD.36489579
TACHYONTrojan-PWS/W32.Racealer.5420544
Acronissuspicious
McAfeeArtemis!8F7EEC915723
MAXmalware (ai score=81)
MalwarebytesSpyware.RedLineStealer
PandaTrj/CI.A
RisingTrojan.Fuerboos!8.EFC8 (CLOUD)
IkarusTrojan.SuspectCRC
FortinetW32/Racealer.KTO!tr.pws
AVGWin32:Trojan-gen
Paloaltogeneric.ml
Qihoo-360Win32/TrojanSpy.Raccoon.HxMB2dIA

How to remove Generik.HZUZXYA?

Generik.HZUZXYA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment