Malware

Generik.KVXQEQI removal guide

Malware Removal

The Generik.KVXQEQI is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.KVXQEQI virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Detected script timer window indicative of sleep style evasion
  • A process attempted to delay the analysis task.
  • Attempts to connect to a dead IP:Port (9 unique times)
  • Reads data out of its own binary image
  • Performs some HTTP requests
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • Creates a hidden or system file
  • Attempts to modify proxy settings
  • Creates a copy of itself
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

Related domains:

z.whorecord.xyz
a.tomx.xyz
www.hack.com
www.yeah.com
www.bing.com
apps.identrust.com
crl.identrust.com
x1.c.lencr.org
r3.o.lencr.org

How to determine Generik.KVXQEQI?


File Info:

crc32: CB2DA754
md5: 58de358d3e23861fb308c51549fc2da1
name: 58DE358D3E23861FB308C51549FC2DA1.mlw
sha1: a593c286081ac6a83c8dc6e6b7c17d0f9c8be36b
sha256: 032b7264ba529c0e7fc97bad95fefff1228d5701deb9ed93a94e61f77ccb3d03
sha512: a1cd640933133211613876872ae6240c23b7b18e651da962e21324c25e330805f89036a9be28e43a6aecd05094ce3f1e2fc407e28f7a70ec2210705f933a06a0
ssdeep: 1536:8b7ftfkS5g9YOms+gZcQipICdXkNDqLLZX9lItVGL++eIOlnToIfgdNO:83FfHgTWmCRkGbKGLeNTBfgd
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

LegalCopyright: OTLcoma
InternalName: sft
FileVersion: 1.0.0.1
CompanyName: Softeradl
PrivateBuild: No
LegalTrademarks: OlympTrade
Comments: No comments
ProductName: Other
SpecialBuild: No
ProductVersion: 1.0.2.3
FileDescription: Start file
OriginalFilename: SoftPro.com
Translation: 0x0000 0x04e4

Generik.KVXQEQI also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00564bfa1 )
LionicTrojan.BAT.Zapchast.4!c
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.42993794
CylanceUnsafe
SangforTrojan.Win32.Wacatac.C
AlibabaTrojan:BAT/Zapchast.46f2ac32
K7GWTrojan ( 00564bfa1 )
Cybereasonmalicious.d3e238
CyrenW32/Trojan.LMOD-8331
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.KVXQEQI
APEXMalicious
AvastWin32:Trojan-gen
KasperskyTrojan.BAT.Zapchast.aa
BitDefenderTrojan.GenericKD.42993794
NANO-AntivirusTrojan.Win32.Zapchast.hmqagt
MicroWorld-eScanTrojan.GenericKD.42993794
TencentBat.Trojan.Zapchast.Sysk
Ad-AwareTrojan.GenericKD.42993794
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34058.fu0@aeJm78d
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.nh
FireEyeGeneric.mg.58de358d3e23861f
EmsisoftTrojan.GenericKD.42993794 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.BAT.xk
eGambitUnsafe.AI_Score_95%
MicrosoftTrojan:Win32/Occamy.C03
ArcabitTrojan.Generic.D2900882
ZoneAlarmTrojan.BAT.Zapchast.aa
GDataTrojan.GenericKD.42993794
TACHYONRansom/W32.FileCoder.92672
McAfeeGenericRXAA-AA!58DE358D3E23
MAXmalware (ai score=87)
VBA32Trojan.BAT.Zapchast
MalwarebytesGeneric.Trojan.Malicious.DDS
PandaTrj/CI.A
RisingTrojan.Generic@ML.97 (RDMK:olmuGs066FqmlCPd3m8tyg)
IkarusTrojan.PowerShell.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Zapchast.AA!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
Qihoo-360Win32/Backdoor.Zapchast.HgIASOMA

How to remove Generik.KVXQEQI?

Generik.KVXQEQI removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment