Malware

Generik.IJHXDJR removal tips

Malware Removal

The Generik.IJHXDJR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.IJHXDJR virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Executed a command line with /C or /R argument to terminate command shell on completion which can be used to hide execution
  • Possible date expiration check, exits too soon after checking local time
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality
  • Uses Windows utilities for basic functionality

How to determine Generik.IJHXDJR?


File Info:

name: C2ACAF90C088D31F1170.mlw
path: /opt/CAPEv2/storage/binaries/a280f2d886cb380309bd16d75f7349a87160cbd39d7feab49438a9cbcf39676f
crc32: 0D761379
md5: c2acaf90c088d31f117062c98bcb3a51
sha1: 407ff9045dc945147ed280cfba41169b873b07dd
sha256: a280f2d886cb380309bd16d75f7349a87160cbd39d7feab49438a9cbcf39676f
sha512: ac82db08ae4dd3b3ba1066f9a7f3aa8865921cbe851b619d8c58bfeefd7d99a91b37a4d54323d1f64348f760918d735c48f73302e6336d8fa7f49963fa81988f
ssdeep: 1536:T7fbN3eEDhDPA/pICdUkbBtW7upvaLU0bI5taxKo0IOlnToIfnwx:P7DhdC6kzWypvaQ0FxyNTBfnk
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1AD936D41F3E102F7EAF2053100A6722F973663389764A8DBC75C2E529913AD5A63D3E9
sha3_384: d617f7232f04b772f9a4a61787431f1dc501a5cab8ddfcc1677c474fee647ad7a1628836fbf81f069dc09398c84af200
ep_bytes: 68ac00000068000000006868804100e8
timestamp: 2019-07-30 08:52:45

Version Info:

0: [No Data]

Generik.IJHXDJR also known as:

BkavW32.AIDetect.malware2
FireEyeGeneric.mg.c2acaf90c088d31f
CAT-QuickHealTrojan.FuerboosPMF.S17157152
MalwarebytesTrojan.Crypt
SangforTrojan.Win32.Save.a
Cybereasonmalicious.45dc94
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.IJHXDJR
AvastFileRepMalware
McAfee-GW-EditionBehavesLike.Win32.Generic.mh
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
Antiy-AVLTrojan/Generic.ASMalwS.2B9E7F9
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
RisingTrojan.Generic@ML.100 (RDMK:iySdaw2UlxxTikUOoVhpZg)
IkarusTrojan.SuspectCRC
MaxSecureTrojan.Malware.300983.susgen
FortinetPossibleThreat.PALLAS.H
AVGFileRepMalware

How to remove Generik.IJHXDJR?

Generik.IJHXDJR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment