Malware

Generik.INTZEOU malicious file

Malware Removal

The Generik.INTZEOU is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.INTZEOU virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality
  • Created a process from a suspicious location

How to determine Generik.INTZEOU?


File Info:

name: 0C43DDAB97EE08E90EB4.mlw
path: /opt/CAPEv2/storage/binaries/d0cc0aad22d54c4efd578266c726f2a4682e4906c5bc1204ed600b85a70728b7
crc32: 1C1B99D3
md5: 0c43ddab97ee08e90eb4c07aaeb82a47
sha1: a06188dcb6ec1440e2697f3c3b80d9d2abeb96b2
sha256: d0cc0aad22d54c4efd578266c726f2a4682e4906c5bc1204ed600b85a70728b7
sha512: 59d64f7a6f6de3eca33ddf897a2085ff82fb32f6f1cf258e8375beeee1c734645b0a6f9a244908e9ea93ccad2f04b44a6a6d288e75616f197ac7c0892520c5ce
ssdeep: 1536:iJez3K/7scfOLDFeF9fvH2oGHOBiNgzAqw7FP2jaSXFky1aNJIsWSqgcdvSotCB6:xDi7scf4A/H2oGHOBiNgzAqJ1scvSoO6
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T103935B51B5C1D472E5722D324870DAB14E3EFD315E21AE6B3358027A0F252C39B66EAF
sha3_384: ffc8f3268188a6b8f378985d5a8816af779040666a3ef915afdc1a89a1208a9e3cbe62fe10a9674297b71d4d16aaac32
ep_bytes: e8c5030000e974feffff558bec6a00ff
timestamp: 2021-12-04 19:38:37

Version Info:

0: [No Data]

Generik.INTZEOU also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Shelma.4!c
MicroWorld-eScanDropped:Generic.RozenaA.9DA0D283
McAfeeRDN/Generic.grp
CylanceUnsafe
K7AntiVirusRiskware ( 0040eff71 )
AlibabaTrojan:Win32/Shelma.63a59e9e
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.b97ee0
BitDefenderThetaAI:Packer.EEB2574A1C
SymantecMeterpreter
ESET-NOD32a variant of Generik.INTZEOU
TrendMicro-HouseCallTROJ_GEN.R011C0WL821
KasperskyTrojan.Win32.Shelma.ind
BitDefenderDropped:Generic.RozenaA.9DA0D283
AvastWin32:ShellCode-DD [Trj]
TencentWin32.Trojan.Shelma.Gbr
Ad-AwareDropped:Generic.RozenaA.9DA0D283
SophosMal/Generic-S
TrendMicroTROJ_GEN.R011C0WL821
McAfee-GW-EditionRDN/Generic.grp
FireEyeDropped:Generic.RozenaA.9DA0D283
EmsisoftDropped:Generic.RozenaA.9DA0D283 (B)
IkarusTrojan.Shelma
JiangminTrojan.Shelma.kkg
AviraTR/Shelma.shppn
Antiy-AVLTrojan/Generic.ASMalwS.34EA0B4
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ViRobotTrojan.Win32.Z.Shelma.91648.EJ
GDataWin32.Trojan.PSE.114IVQD
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.RozenaA.R456514
VBA32Trojan.Shelma
ALYacDropped:Generic.RozenaA.9DA0D283
MalwarebytesMalware.AI.2572438105
APEXMalicious
RisingTrojan.Generic@ML.82 (RDMK:a65tRklVlcHOfOeTa39PAQ)
MAXmalware (ai score=83)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/PossibleThreat
AVGWin32:ShellCode-DD [Trj]

How to remove Generik.INTZEOU?

Generik.INTZEOU removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment