Malware

Generik.IPRUOND (file analysis)

Malware Removal

The Generik.IPRUOND is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.IPRUOND virus can do?

  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • A scripting utility was executed
  • Deletes executed files from disk

How to determine Generik.IPRUOND?


File Info:

name: D685EE6B1C22D25AFA04.mlw
path: /opt/CAPEv2/storage/binaries/400d6cc5ca3637b992db56f16a381ca3b37e5442a22de29c8cecd029ec9b8c88
crc32: ED1D00C0
md5: d685ee6b1c22d25afa042109a522b34a
sha1: 6f9d5c8aa5f888c96e01ba3a03aa86c0c6ce9624
sha256: 400d6cc5ca3637b992db56f16a381ca3b37e5442a22de29c8cecd029ec9b8c88
sha512: 68a503c11823f303ebbefad7037dec2608774a8ccb1c3d544a18ba915173ec9e753ebd758b84b6994ae7cb0c6afe28bc743da466b9015df14e3569fc22ffbeb8
ssdeep: 1536:gyrKfRNo1pcXMwWVCikjuzGX/jGP9/lIMAerJ:gyrKRUqMwKCiIuiPa9/lIRkJ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14E937C277951813FD0F0417224E54A316FB9FD23211BAD6BF78A398A1E71CE8DB1634A
sha3_384: c0d050167f0eac61e7ccbb1096317ee90f506cf095c566f07b37e140f42af1a7fc6a3d0fa6ef6fa0c1099538f788f521
ep_bytes: 558bec6aff68a0e940006868a1400064
timestamp: 2007-08-31 23:51:21

Version Info:

0: [No Data]

Generik.IPRUOND also known as:

MicroWorld-eScanTrojan.GenericKD.39973534
FireEyeTrojan.GenericKD.39973534
ALYacTrojan.GenericKD.39973534
ZillyaTrojan.Delf.Win32.71448
SangforTrojan.Win32.Agent.V1bm
AlibabaTrojan:Win32/Generic.72e5f4df
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderThetaGen:NN.ZexaF.34806.fqW@amods9eO
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.IPRUOND
TrendMicro-HouseCallTROJ_GEN.R002C0WGE22
Paloaltogeneric.ml
KasperskyTrojan.Win32.Agent.xapwkk
BitDefenderTrojan.GenericKD.39973534
AvastWin32:Malware-gen
Ad-AwareTrojan.GenericKD.39973534
DrWebTrojan.MulDrop3.30905
VIPRETrojan.GenericKD.39973534
TrendMicroTROJ_GEN.R002C0WGE22
McAfee-GW-EditionBehavesLike.Win32.Dropper.mm
EmsisoftTrojan.GenericKD.39973534 (B)
GDataTrojan.GenericKD.39973534
AviraTR/Agent.lnxwq
MAXmalware (ai score=86)
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 99)
McAfeeRDN/Generic.dx
VBA32Trojan.MulDrop
RisingTrojan.Agent!8.B1E (CLOUD)
IkarusTrojan-Dropper.Win32.SVB
MaxSecureTrojan.Malware.185650131.susgen
FortinetW32/PossibleThreat
AVGWin32:Malware-gen
PandaTrj/Chgt.AB

How to remove Generik.IPRUOND?

Generik.IPRUOND removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment