Malware

Generik.JQYFTMH malicious file

Malware Removal

The Generik.JQYFTMH is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.JQYFTMH virus can do?

  • Executable code extraction
  • Creates RWX memory
  • At least one IP Address, Domain, or File Name was found in a crypto call
  • Reads data out of its own binary image
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generik.JQYFTMH?


File Info:

crc32: C599289C
md5: ff47e6eb2602178a4306e4fcecb15b7d
name: 111.exe
sha1: 294ecaa563146f4ca75b676e13c05320066505b2
sha256: ea5c72bce7e028a6b2f9febd90751bf0e323da00b4b0d68be2a52ed21fe2a4d0
sha512: ee577364d660b48cb4a24dab1e9f892a81b5dc96c71b41dea71c211bbd6175e1af62a09e4da1ee23ff13afd60f4fa8116d259643113fbecfe863c38143dcea18
ssdeep: 6144:2t4BiH46o7+mL62Dx37sb+8i9U3RSmQRfBiHJToV0YblF+ytAq0StUt6F4qXL2HK:w4BKE9sbLi9U36fBKobKBStmHqXuQDL
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: Copyrightsxa9, 2000 Spnorte Tecnologia
InternalName: TabDock
FileVersion: 1.06
CompanyName: Spnorte Tecnologia
LegalTrademarks: Spnorte and Spnorte.Com are trademarks of Spnorte Tecnologia
Comments: Docking form system for Visual Basic Application
ProductName: TabDock Control
ProductVersion: 1.06
OriginalFilename: TabDock.exe

Generik.JQYFTMH also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.44089117
FireEyeGeneric.mg.ff47e6eb2602178a
McAfeeTrickbot-FSYE!FF47E6EB2602
CylanceUnsafe
BitDefenderTrojan.GenericKD.44089117
Cybereasonmalicious.563146
SymantecML.Attribute.HighConfidence
KasperskyTrojan.Win32.Bsymem.tqj
AegisLabTrojan.Multi.Generic.4!c
RisingTrojan.Kryptik!1.C606 (CLASSIC)
Ad-AwareTrojan.GenericKD.44089117
DrWebTrojan.Packed.140
InvinceaGeneric ML PUA (PUA)
McAfee-GW-EditionBehavesLike.Win32.Generic.jh
EmsisoftTrojan.GenericKD.44089117 (B)
APEXMalicious
WebrootW32.Trojan.Gen
MicrosoftTrojan:Win32/Wacatac.C!ml
ZoneAlarmTrojan.Win32.Bsymem.tqj
GDataWin32.Trojan-Spy.TrickBot.YZPK22
VBA32BScope.Backdoor.Androm
MAXmalware (ai score=86)
IkarusTrojan-Spy.Win32.TrickBot
ESET-NOD32a variant of Generik.JQYFTMH
SentinelOneDFI – Suspicious PE
FortinetW32/Bsymem.TQJ!tr
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_90% (W)
Qihoo-360Win32/Trojan.ea6

How to remove Generik.JQYFTMH?

Generik.JQYFTMH removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment