Malware

Should I remove “Generik.JJWRXUX”?

Malware Removal

The Generik.JJWRXUX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.JJWRXUX virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Performs HTTP requests potentially not found in PCAP.
  • HTTPS urls from behavior.
  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Harvests cookies for information gathering
  • Anomalous binary characteristics

How to determine Generik.JJWRXUX?


File Info:

name: 83A4B0F82FA606D7F607.mlw
path: /opt/CAPEv2/storage/binaries/848be86f67f602970fd9fea17e96c4fdfd7a67b768b6b4d542856e209bf3507c
crc32: 5FB9A1FA
md5: 83a4b0f82fa606d7f607982edd02237c
sha1: 15e66f671ef8f310b2ce51ca05d6be9b57d4e877
sha256: 848be86f67f602970fd9fea17e96c4fdfd7a67b768b6b4d542856e209bf3507c
sha512: 8bf3077f0956cacfb310c832780def351627c4c3d73abe2cdfc7a2dce29042d4054d5d311c7bad543e65ea65060d4701fa0e14435722e5e7856bbf606d0d34f8
ssdeep: 3072:EHVFJYQT/qr//GEVw9XzbdJiSad5LX0Q2Dt53IxI:AFJYQT+ijb2h20
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T185E37C2132E0C072E01625B98525C7B19EAF7C756A66AE8F7FC90AFC4F187E1D71530A
sha3_384: 67434b05735e6ae1bb4cda476111fa9a0372485d2761567398d82c0d789985e6f31edfb5988caae43b636498cc2bb170
ep_bytes: e85f3f0000e978feffff8bff558bec81
timestamp: 2020-08-03 05:34:47

Version Info:

0: [No Data]

Generik.JJWRXUX also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader35.13781
MicroWorld-eScanGen:Trojan.Heur.RP.iuX@bKZVjpoi
FireEyeGeneric.mg.83a4b0f82fa606d7
ALYacGen:Trojan.Heur.RP.iuX@bKZVjpoi
CylanceUnsafe
ZillyaTrojan.Generic.Win32.1290542
SangforTrojan.Win32.Wacatac.D8
AlibabaTrojanDownloader:Win32/Redcap.c712e42f
Cybereasonmalicious.82fa60
BitDefenderThetaAI:Packer.FC0D0C761F
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.JJWRXUX
Paloaltogeneric.ml
KasperskyHEUR:Trojan-Downloader.Win32.Generic
BitDefenderGen:Trojan.Heur.RP.iuX@bKZVjpoi
NANO-AntivirusTrojan.Win32.Redcap.igbqiy
AvastWin32:Dh-A [Heur]
TencentMalware.Win32.Gencirc.11b16624
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Dropper.ch
EmsisoftGen:Trojan.Heur.RP.iuX@bKZVjpoi (B)
JiangminTrojanDownloader.Generic.bcqc
AviraHEUR/AGEN.1140355
MicrosoftTrojan:Win32/Ymacco.AA84
GDataGen:Trojan.Heur.RP.iuX@bKZVjpoi
CynetMalicious (score: 100)
AhnLab-V3Malware/Gen.Reputation.C4228858
McAfeeArtemis!83A4B0F82FA6
MAXmalware (ai score=83)
VBA32suspected of Trojan.Downloader.gen
APEXMalicious
RisingDownloader.Generic!8.141 (RDMK:cmRtazq9TOcLyMZnAoic47rdJvJV)
YandexTrojan.GenAsa!rTeWkFM/B0w
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.7175239.susgen
FortinetW32/Generic!tr.dldr
AVGWin32:Dh-A [Heur]
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Generik.JJWRXUX?

Generik.JJWRXUX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment