Malware

Generik.ISDZGRA removal guide

Malware Removal

The Generik.ISDZGRA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.ISDZGRA virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • A process created a hidden window
  • Drops a binary and executes it
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Looks up the external IP address
  • Uses Windows utilities for basic functionality
  • Executed a process and injected code into it, probably while unpacking
  • Creates known Quasar mutexes
  • Collects information to fingerprint the system
  • Uses suspicious command line tools or Windows utilities

Related domains:

telize.com
www.telize.com
freegeoip.net
api.ipify.org

How to determine Generik.ISDZGRA?


File Info:

crc32: 82B2F6D8
md5: 93bcd7a9d6e7a485ea733bdc9c1069b2
name: 93BCD7A9D6E7A485EA733BDC9C1069B2.mlw
sha1: 02fc21ea40571511563b7243ba4f87bdd7ba0966
sha256: 24d6ac9797e0e582189f4cec836a2bfa86402c6b07896ea4f04117cb16b36573
sha512: 60654e4b1c3301984072f32fd5406f8c0f887cf80ae4172b9cd46444984fb31150176bef622220b6e915c2d446e2a68897b1b88e3c781580d8cce4d093433a30
ssdeep: 12288:KjnxHTXAbDnfMy0Dc+8SdTlJWazf/vaDl7Bw55A:uxHTXEjfMjA+8kTlLzf3aJ7S5
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generik.ISDZGRA also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CylanceUnsafe
SangforTrojan.Win32.Quasar.gen
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojanSpy:Win32/Quasar.b4278afb
Cybereasonmalicious.a40571
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.ISDZGRA
APEXMalicious
AvastWin32:Trojan-gen
KasperskyHEUR:Trojan-Spy.Win32.Quasar.gen
ViRobotTrojan.Win32.Z.Wacatac.504832
SophosMal/Generic-S
McAfee-GW-EditionBehavesLike.Win32.Generic.gc
FireEyeGeneric.mg.93bcd7a9d6e7a485
AviraTR/AD.Xiclog.ofgvk
eGambitUnsafe.AI_Score_96%
MicrosoftTrojan:Win32/Hynamer.A!ml
GDataWin32.Trojan.Agent.3CN7VM
AhnLab-V3Win-Trojan/Gandcrab04.Exp
McAfeeArtemis!93BCD7A9D6E7
MAXmalware (ai score=100)
MalwarebytesMachineLearning/Anomalous.100%
RisingSpyware.Quasar!8.1BB5 (CLOUD)
FortinetW32/PossibleThreat
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Generik.ISDZGRA?

Generik.ISDZGRA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment