Malware

About “Generik.LGCDWVA” infection

Malware Removal

The Generik.LGCDWVA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.LGCDWVA virus can do?

  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • The binary likely contains encrypted or compressed data.
  • Tries to suspend Cuckoo threads to prevent logging of malicious activity
  • Tries to unhook or modify Windows functions monitored by Cuckoo

Related domains:

api2.ttp1.cn

How to determine Generik.LGCDWVA?


File Info:

crc32: 7AD14403
md5: cfb9af58958ae74ee90f4c95cfbde121
name: lock_all_jy.exe
sha1: 9410de538612626bfcb36121831039d99666c066
sha256: 66eb83276158a488a19a09736364bda02d04715ad860745fd8fa9d9e71598dde
sha512: bc60824382f7b9c8170cef09f59249d2c281abc5ee9443e6a8557a231a6b5cef18ebe8db58653e9957ecb4348fbb0875b57f3f89afe7ff6a6511b6c8ea912f09
ssdeep: 98304:le1kisW7PhavV6jB34gc1XuBJIgARqxVdwvz8zleKoikVTYBfbVkni2CJn8RzZz:YjsW7PUVOVBJJARqxVdMzAeKzdbebCJ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generik.LGCDWVA also known as:

BkavHW32.Packed.
FireEyeGeneric.mg.cfb9af58958ae74e
Qihoo-360HEUR/QVM19.1.FFE5.Malware.Gen
McAfeeArtemis!CFB9AF58958A
AegisLabTrojan.Win32.Generic.4!c
SymantecML.Attribute.HighConfidence
APEXMalicious
TencentWin32.Trojan.Lock.Fysc
Endgamemalicious (high confidence)
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Backdoor.tc
MicrosoftTrojan:Win32/Wacatac.C!ml
AhnLab-V3Malware/Win32.Generic.C3543429
Acronissuspicious
ESET-NOD32a variant of Generik.LGCDWVA
RisingTrojan.Wacatac!8.10C01 (CLOUD)
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_98%
BitDefenderThetaGen:NN.ZexaF.34106.@FW@a8m!Vuji
AVGFileRepMalware
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Generik.LGCDWVA?

Generik.LGCDWVA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment