Malware

About “Generik.LCHSOPB” infection

Malware Removal

The Generik.LCHSOPB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.LCHSOPB virus can do?

  • Attempts to mimic the file extension of a Excel 97-2003 spreadsheet by having ‘xls’ in the file name.
  • Network activity detected but not expressed in API logs

How to determine Generik.LCHSOPB?


File Info:

crc32: 47F09A4F
md5: cad9033104ac746697b1ac391dc5bc0a
name: SCAN PO TY5676879809_xls.exe
sha1: b36cbbca5e6fb248724432aa8cf567ac689d8039
sha256: a4f5d50066dec8990f99e1b9dd6d9106204b5d064b9aa9c8e5578820dee27947
sha512: aa38276ab5c6a1eaf5f910f419619496c2faf9a2f14bd549cb0dd1954fcca1adbe1eddd13cd7ef15a825e8cc48ca335dc0b7ab42074a2566e87483976be35de4
ssdeep: 12288:oewSNg6NUmxh3KtDyahRwmdYnX0Z17WT+j7X/:7g6NHxh6t+ahRVdcX0Zh
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 1.0.0.0
InternalName: SCAN PO TY5676879809_xls.exe
FileVersion: 1.0.0.0
ProductName: VideoLAN
ProductVersion: 1.0.0.0
FileDescription:
OriginalFilename: SCAN PO TY5676879809_xls.exe

Generik.LCHSOPB also known as:

Elasticmalicious (high confidence)
McAfeeArtemis!CAD9033104AC
CylanceUnsafe
AegisLabTrojan.Multi.Generic.4!c
SangforMalware
CrowdStrikewin/malicious_confidence_90% (W)
CyrenW32/MSIL_Kryptik.BWV.gen!Eldorado
APEXMalicious
Paloaltogeneric.ml
KasperskyUDS:DangerousObject.Multi.Generic
AlibabaTrojan:Win32/Kryptik.ali2000016
F-SecureHeuristic.HEUR/AGEN.1106266
InvinceaGeneric ML PUA (PUA)
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.cad9033104ac7466
AviraHEUR/AGEN.1106266
MicrosoftTrojan:Win32/Wacatac.C!ml
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataMSIL.Trojan-Stealer.AgentTesla.HSJC76
CynetMalicious (score: 85)
MalwarebytesTrojan.MalPack.VL
ESET-NOD32a variant of Generik.LCHSOPB
IkarusTrojan.MSIL.Inject
FortinetMalicious_Behavior.SB
BitDefenderThetaGen:NN.ZemsilCO.34566.Fm0@auoJS7g
AVGFileRepMalware

How to remove Generik.LCHSOPB?

Generik.LCHSOPB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment