Malware

Generik.JXLSTBR removal tips

Malware Removal

The Generik.JXLSTBR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.JXLSTBR virus can do?

  • Starts servers listening on 127.0.0.1:8001, 0.0.0.0:1726, 0.0.0.0:8888
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Uses Windows utilities for basic functionality
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file

Related domains:

www.yahoo.com

How to determine Generik.JXLSTBR?


File Info:

crc32: 37F79280
md5: dbedc8efc2ca3411e19f578cec8c174f
name: 8.exe
sha1: b36a9227aa900396e3f144dd17531f7d2977ea11
sha256: b5c7fbd5e805b6f1a9796c041be4f9829d2157e5b59a6608871511d045b8d79c
sha512: c79af554c8e61e361fbc1baee73d7d8105e94b5f2608c1b19ff364c2538d0a5898d3f145710d1d9d1d10c20181accc0b1ed652d15271993f4ff506557cc6f7a1
ssdeep: 24576:fW6VXRhfEzyYpRZflLIvYK8QCuuYRyskrDRlFZ+7LPpe3gJUtbArBejKWF5:O6IyGRZfsYK8QZZRysADR3kfptUVMg2G
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generik.JXLSTBR also known as:

Elasticmalicious (high confidence)
DrWebTrojan.DownLoader33.28267
MicroWorld-eScanTrojan.GenericKD.43663141
FireEyeGeneric.mg.dbedc8efc2ca3411
ALYacTrojan.GenericKD.43663141
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
BitDefenderTrojan.GenericKD.43663141
CrowdStrikewin/malicious_confidence_70% (W)
TrendMicroTrojanSpy.Win32.OCCAMY.USXVPHE20
CyrenW32/Downloader.APOX-9336
SymantecTrojan.Gen.MBT
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan.Win32.Agent.xadjfu
AlibabaTrojan:Win32/yytjk.a0dbbaa4
NANO-AntivirusTrojan.Win32.Generic.hdjfei
ViRobotTrojan.Win32.Z.Agent.1237519
AegisLabTrojan.Win32.Agent.4!c
Ad-AwareTrojan.GenericKD.43663141
ComodoMalware@#t8shtiyuqy1u
F-SecureTrojan.TR/Agent.yytjk
Invinceaheuristic
SophosMal/Generic-S
F-ProtW32/Downldr2.JNLI
MaxSecureTrojan.Malware.75394455.susgen
AviraTR/Agent.yytjk
MAXmalware (ai score=100)
MicrosoftTrojan:Win32/Occamy.C
ArcabitTrojan.Generic.D29A3F25
ZoneAlarmTrojan.Win32.Agent.xadjfu
GDataTrojan.GenericKD.43663141
CynetMalicious (score: 100)
McAfeeArtemis!DBEDC8EFC2CA
VBA32Trojan.Agent
MalwarebytesTrojan.Agent
PandaTrj/CI.A
ESET-NOD32a variant of Generik.JXLSTBR
TrendMicro-HouseCallTrojanSpy.Win32.OCCAMY.USXVPHE20
TencentWin32.Trojan.Agent.Wvur
YandexTrojan.PowerShell!
IkarusTrojan.Agent
eGambitUnsafe.AI_Score_99%
FortinetW32/Generik.JXLSTBR!tr
WebrootW32.Malware.Gen
AVGWin32:Malware-gen
Cybereasonmalicious.fc2ca3
AvastWin32:Malware-gen
Qihoo-360Generic/Trojan.7b6

How to remove Generik.JXLSTBR?

Generik.JXLSTBR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment