Malware

Generik.LIWNTHW removal instruction

Malware Removal

The Generik.LIWNTHW is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.LIWNTHW virus can do?

  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Generik.LIWNTHW?


File Info:

crc32: 4E08BEA8
md5: 9d38eeea052f3ef898570fe0bfd3b798
name: 9D38EEEA052F3EF898570FE0BFD3B798.mlw
sha1: 02023e1ae4c68f0f6eeecb9793596271dd9335b1
sha256: 93018c764083348f1a7903104d0934486d3960a4a7de12d99b647c736d5b7b14
sha512: 9f7514ec0873b3aafc4c37284bd931282d1c9f7baba5bf3bd0d02f1b48ca23e9011c30bdba486b177289558499c5fd0e097e7fcec6fa0268589ff19daafcd799
ssdeep: 1536:6h0LKb26MRHTpJIID46VhPHVSw/ymYdxyrxm+mjA9gTYDstUIX:6h0LKb2rRzpf46zHVnZ6uek8X
type: PE32 executable (console) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Google USA (c) 1996-2016
Assembly Version: 1.1.2.4
InternalName: spoolsc.exe
FileVersion: 1.1.2.4
CompanyName: Google America (c)
LegalTrademarks: Google USA (c) 1996-2016
Comments: Google Drive
ProductName: Google America Web Drivers
ProductVersion: 1.1.2.4
FileDescription: Google Application
OriginalFilename: spoolsc.exe

Generik.LIWNTHW also known as:

K7AntiVirusTrojan ( 700000121 )
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
CAT-QuickHealTrojan.Generic
ALYacTrojan.GenericKD.36805765
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Generic.3d6e72ca
K7GWTrojan ( 700000121 )
Cybereasonmalicious.ae4c68
CyrenW32/Trojan.XHUG-2186
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.LIWNTHW
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Packed.Hpbladabi-6860330-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.GenericKD.36805765
ViRobotTrojan.Win32.Z.Agent.66048.AEA
MicroWorld-eScanTrojan.GenericKD.36805765
Ad-AwareTrojan.GenericKD.36805765
BitDefenderThetaGen:NN.ZemsilF.34686.em0@a0nWMmb
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Trojan.kh
FireEyeGeneric.mg.9d38eeea052f3ef8
EmsisoftTrojan.GenericKD.36805765 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1112883
eGambitUnsafe.AI_Score_98%
MicrosoftBackdoor:Win32/Bladabindi!ml
AegisLabTrojan.Win32.Generic.4!c
GDataWin32.Trojan.Agent.0XU9JV
AhnLab-V3Trojan/Win32.Bladabindi.C424783
McAfeeArtemis!9D38EEEA052F
MAXmalware (ai score=86)
VBA32TScope.Trojan.MSIL
TrendMicro-HouseCallTROJ_GEN.R002C0WE121
RisingTrojan.Generic!8.C3 (CLOUD)
IkarusTrojan.Msil
FortinetPossibleThreat
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Generik.LIWNTHW?

Generik.LIWNTHW removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment