Malware

Generik.LEOUXZT removal instruction

Malware Removal

The Generik.LEOUXZT is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.LEOUXZT virus can do?

  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Network activity detected but not expressed in API logs

How to determine Generik.LEOUXZT?


File Info:

crc32: 16E0F079
md5: fa0b99c4798293ba8869939292b56eda
name: FA0B99C4798293BA8869939292B56EDA.mlw
sha1: a51d49d73bb399887eb2db2fe910f43de27bca9f
sha256: 084e28341b84c7fc4a1aaa3b6a8c7f3f98367cdcc45cd8dd9914449b802fdaeb
sha512: db471de671b5e266780faebd2f979c2f058389af3fe87575bd249ceba40967dde317abb22ea73552d364f2331199ea0558dcab7a912ebcc33f435f977f6f93df
ssdeep: 49152:oyf7fYyoH0mgj2iKGxG8/3NphnXOxIyGgtUp3JuTvOiylpAKVH3/b:n7fYfH0Lj2LGnHXOayLY3QmluKVX/b
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Copyright xa9 1997-2006 Stardust Software.
InternalName: SfxStub
FileVersion: 4, 5, 0, 207
CompanyName: Stardust Software
PrivateBuild:
LegalTrademarks: Stardust and Screen Saver Toolkit are trademarks of Stardust Software.
Comments: www.stardustsoftware.com
ProductName: Stardust Screen Saver Toolkit
SpecialBuild:
ProductVersion: 4, 5, 0, 207
FileDescription: Screen Saver Single-Exe Installer
OriginalFilename: SfxStub.exe
Translation: 0x0409 0x04b0

Generik.LEOUXZT also known as:

LionicTrojan.Win32.Generic.4!c
CylanceUnsafe
ZillyaDropper.Agent.Win32.7533
SangforBackdoor.Win32.DsBot.ada
SymantecTrojan.Gen.2
ESET-NOD32a variant of Generik.LEOUXZT
APEXMalicious
KasperskyTrojan.Win32.Bsymem.adua
AlibabaTrojanDropper:Win32/Generic.62b26de3
SophosGeneric PUA KF (PUA)
McAfee-GW-EditionArtemis!Trojan
JiangminBackdoor/DsBot.ada
Antiy-AVLTrojan/Generic.ASMalwS.9548B9
MicrosoftTrojan:Win32/Wacatac.B!ml
McAfeeArtemis!FA0B99C47982
TrendMicro-HouseCallTROJ_GEN.R002H0DJR21
IkarusTrojan-Dropper.Agent
eGambitUnsafe.AI_Score_99%

How to remove Generik.LEOUXZT?

Generik.LEOUXZT removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment