Malware

Should I remove “Generik.IOEXCAJ”?

Malware Removal

The Generik.IOEXCAJ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.IOEXCAJ virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Generik.IOEXCAJ?


File Info:

name: 65636F448DEDF6AD91C4.mlw
path: /opt/CAPEv2/storage/binaries/c0e2ac0ea2ac9c79dccb46bdcca91ee077fc5b4293b38ed129cdf3d9ed37e28b
crc32: C223C842
md5: 65636f448dedf6ad91c4937d1b947ebc
sha1: c7c2d0fb84b6c6162c92a96770e43a68b7bc38c7
sha256: c0e2ac0ea2ac9c79dccb46bdcca91ee077fc5b4293b38ed129cdf3d9ed37e28b
sha512: f4b8c6422ecf45189872b294f6cf189f786a30abc3eb8ac9bbf1d974e3cf7cb76378476c57977676f9ad7f2e0b2b93924f5648575807bed4b94370e1536e1e75
ssdeep: 24576:CMmL+js+3Wvpw8x+UdNNBo44xS7LyAVnipiFVt8l76HNTe9BmTQk3lr2PQFdTWQO:jmL+Z3Wvpw8x+UPMElH3tUvk1qEk5
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1DAC5E083B240C0D2C0152DB1DC9BC7F9A6F17D20DC9686177291BF6EBC729935A23E66
sha3_384: 4c5705857757d88ec4faa6d3c4b17fcd5f84fa3309be65423e0f0921bacc87043dc28fecff824044b6841ae4e226d1d4
ep_bytes: 60be00e06a008dbe0030d5ff5789e58d
timestamp: 2022-10-28 07:54:22

Version Info:

0: [No Data]

Generik.IOEXCAJ also known as:

tehtrisGeneric.Malware
FireEyeGeneric.mg.65636f448dedf6ad
McAfeeGenericRXAA-AA!65636F448DED
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
BitDefenderThetaGen:NN.ZexaF.34796.HoW@a09fy2ib
CyrenW32/Backdoor.J.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of Generik.IOEXCAJ
KasperskyVHO:Trojan.Win32.Convagent.gen
RisingTrojan.MalCert!1.D834 (CLASSIC)
SophosMal/Generic-S
ComodoPacked.Win32.MUPX.Gen@24tbus
Trapminemalicious.moderate.ml.score
IkarusTrojan.Agent
JiangminRiskTool.FlyStudio.ang
GoogleDetected
AviraHEUR/AGEN.1251230
Antiy-AVLTrojan/Win32.FlyStudio.a
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.Generic.R449330
Acronissuspicious
VBA32Rootkit.Agent
MalwarebytesGeneric.Crypt.Trojan.Malicious.DDS
APEXMalicious
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.188598396.susgen
FortinetW32/ULPM.16C0!tr
AVGWin32:RootkitX-gen [Rtk]
Cybereasonmalicious.b84b6c
AvastWin32:RootkitX-gen [Rtk]

How to remove Generik.IOEXCAJ?

Generik.IOEXCAJ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment