Malware

Generik.IXFXUAH malicious file

Malware Removal

The Generik.IXFXUAH is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.IXFXUAH virus can do?

  • Presents an Authenticode digital signature
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Generik.IXFXUAH?


File Info:

name: 391F2E5D0C4819A238CA.mlw
path: /opt/CAPEv2/storage/binaries/bfb5d8ab558d5057f1980c1bab9bfb8215d43f41f0065caa25944a973b6af3eb
crc32: C597BF08
md5: 391f2e5d0c4819a238cad03c88b6ae77
sha1: b669e25d87b470114761988cb4cf9fbb28fc0a3e
sha256: bfb5d8ab558d5057f1980c1bab9bfb8215d43f41f0065caa25944a973b6af3eb
sha512: 08294a821c9e0f212a102faca7af0a0b09b0a54617a962da37bbf2eb42e8fec9d08984fbab3c0d3c793d77f646624bf59cef34fb6a559749d60ca9be872fdcf6
ssdeep: 3072:wlOUyO7zxgpuRRCPoRNyHXIQenAKo7MMye9zurKCy5bl0EBUUffNtWEivOOOJZoN:woIxgCfAb7nC0WEG05iTz8aIo
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CC9418C5B0689481CAF8B5F2B863E91121F92CAD9EC3564D72FD32361473A97DD0A90F
sha3_384: 77b8eecd3052bd128ab9f4c335ef8ff4b945e7ff151df6911abc51189411bfb1846852eade8a422055c83a47c35dc7d6
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-10-28 15:48:37

Version Info:

Translation: 0x0000 0x04b0
Comments: lightshot Setup
CompanyName: Skillbrains
FileDescription: lightshot Setup
FileVersion: 5.5.0.7
InternalName: app12.exe
LegalCopyright:
LegalTrademarks:
OriginalFilename: app12.exe
ProductName: lightshot
ProductVersion: 5.5.0.7
Assembly Version: 5.5.0.7

Generik.IXFXUAH also known as:

LionicTrojan.MSIL.Stealer.l!c
MicroWorld-eScanTrojan.GenericKD.38026285
FireEyeGeneric.mg.391f2e5d0c4819a2
McAfeeRDN/Generic PWS.y
CylanceUnsafe
ZillyaTrojan.Stealer.Win32.19172
SangforTrojan.MSIL.Stealer.gen
K7AntiVirusTrojan ( 0057ed431 )
AlibabaTrojanSpy:MSIL/Stealer.ae30b7b5
K7GWTrojan ( 0057ed431 )
Cybereasonmalicious.d87b47
BitDefenderThetaGen:NN.ZemsilF.34084.Am1@aCk0l6d
CyrenW32/MSIL_Troj.AVL.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.IXFXUAH
TrendMicro-HouseCallTROJ_GEN.R002C0WKG21
Paloaltogeneric.ml
KasperskyHEUR:Trojan-Spy.MSIL.Stealer.gen
BitDefenderTrojan.GenericKD.38026285
AvastWin32:Malware-gen
Ad-AwareTrojan.GenericKD.38026285
EmsisoftTrojan.GenericKD.38026285 (B)
F-SecureTrojan.TR/Spy.Stealer.yotkg
TrendMicroTROJ_GEN.R002C0WKG21
McAfee-GW-EditionRDN/Generic PWS.y
SophosMal/Generic-S
IkarusTrojan.MSIL.CryptoObfuscator
GDataTrojan.GenericKD.38026285
JiangminTrojanSpy.MSIL.bycl
eGambitPE.Heur.InvalidSig
AviraTR/Spy.Stealer.yotkg
MAXmalware (ai score=99)
ArcabitTrojan.Generic.D2443C2D
MicrosoftTrojan:Win32/Casdet!rfn
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.PWS.C4811501
VBA32TScope.Trojan.MSIL
ALYacTrojan.GenericKD.38026285
MalwarebytesTrojan.Injector.MSIL
APEXMalicious
SentinelOneStatic AI – Malicious PE
FortinetW32/Malicious_Behavior.SBX
WebrootW32.Malware.Gen
AVGWin32:Malware-gen
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Generik.IXFXUAH?

Generik.IXFXUAH removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment