Malware

What is “Generik.KBNWNUO”?

Malware Removal

The Generik.KBNWNUO is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.KBNWNUO virus can do?

  • Dynamic (imported) function loading detected
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Generik.KBNWNUO?


File Info:

name: B857C2AD86CB3D54C63A.mlw
path: /opt/CAPEv2/storage/binaries/8c85211d672423a1016980612b23c792fb14241b63c42f07eea7c36740fa1a3f
crc32: 510A9BC0
md5: b857c2ad86cb3d54c63a4d1891c957e4
sha1: a16a4537b0df184fb729e642e44ba1530f148944
sha256: 8c85211d672423a1016980612b23c792fb14241b63c42f07eea7c36740fa1a3f
sha512: 31b4bc253a175bd5a7b8fc4ba379c0a04449795b003d763c602bc6a2a03d352013534da5f92dbea6d4731b1c087c830e4299496e8a3371df0c27cc68cadb53f6
ssdeep: 3072:Ayrce6o32GhNvth/3IrtNmu8bGdI3VRmDLMB3/tD/:Ayrce6+2GhNz36tMuIGi+DLMtD
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CFC3026572A0842FDE250EF94AC329304BBDE44567B6D2D76CC960FE49E3B836322753
sha3_384: 8a25a2bae29a858bc626f6a0fab10bccf51ebdead1425ef41f25d0d8ddb880365c8c4ce309d7ac3ce68e77e0b831c747
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-12-05 02:13:24

Version Info:

Translation: 0x0000 0x04b0
Comments: usbstorg
CompanyName: usbstorg
FileDescription: usbstorg
FileVersion: 2.0.0.0
InternalName: usbstorg.exe
LegalCopyright: Copyright © 2021
LegalTrademarks: usbstorg
OriginalFilename: usbstorg.exe
ProductName: usbstorg
ProductVersion: 2.0.0.0
Assembly Version: 1.0.0.0

Generik.KBNWNUO also known as:

MicroWorld-eScanTrojan.GenericKD.38193830
FireEyeTrojan.GenericKD.38193830
ALYacTrojan.GenericKD.38193830
BitDefenderTrojan.GenericKD.38193830
BitDefenderThetaGen:NN.ZemsilF.34084.hm0@auyMfel
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.KBNWNUO
APEXMalicious
KasperskyHEUR:Trojan.MSIL.Crypt.gen
AlibabaTrojan:MSIL/Generic.37254f02
ViRobotTrojan.Win32.Z.Agent.126464.XO
AvastWin32:TrojanX-gen [Trj]
Ad-AwareTrojan.GenericKD.38193830
SophosMal/Generic-S
TrendMicroTROJ_GEN.R002C0WL821
McAfee-GW-EditionRDN/Generic.grp
EmsisoftTrojan.GenericKD.38193830 (B)
AviraHEUR/AGEN.1117204
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataWin32.Trojan.Agent.HIQIAC
CynetMalicious (score: 100)
McAfeeRDN/Generic.grp
MAXmalware (ai score=87)
MalwarebytesMalware.AI.4200083023
TrendMicro-HouseCallTROJ_GEN.R002C0WL821
TencentMsil.Trojan.Crypt.Pfjb
YandexTrojan.Crypt!gvTUonhye70
SentinelOneStatic AI – Suspicious PE
FortinetPossibleThreat
PandaTrj/GdSda.A

How to remove Generik.KBNWNUO?

Generik.KBNWNUO removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment