Malware

About “Generik.LTCYFAX” infection

Malware Removal

The Generik.LTCYFAX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.LTCYFAX virus can do?

  • Sample contains Overlay data
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Generik.LTCYFAX?


File Info:

name: B49600417810BD52F0E8.mlw
path: /opt/CAPEv2/storage/binaries/853cfce47687c6f1e7c9b56306d1d0ae7b63ac673f34d2e2c4e31086e9be08bc
crc32: E6B36E78
md5: b49600417810bd52f0e8b574782b6358
sha1: d596ba5e5a149b193adffcd42a4082afc1a0f29c
sha256: 853cfce47687c6f1e7c9b56306d1d0ae7b63ac673f34d2e2c4e31086e9be08bc
sha512: 588e7295cad100e210e1f2b12b306806d67f4a40b2b76be8c591873f4227443128ad71a363a31ed1e90fe21c37ffa1ebd8ff992d2aa3e558f61739dd16b54022
ssdeep: 768:DFgtw5GiQ8p0uc2CqNfQ43g2wp2ZZfDssNPFWmlDjY/O2vjrIFbc11hgbuPMBv0g:DxGiQ8pzcOZxouNWmlDjixObcracM9k
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12A73F14A4896F86FC5F62435326752DE0EA73FFA07D0727F3AB04A596DB0238636D201
sha3_384: 145c52b87a8c50a0895d7ec4b66d1d471385dcfcdbf3f988ffad5605eaea7ac75b568bb8d552b9dd31a68f3e8a76f6e6
ep_bytes: 00000000000000000000000000000000
timestamp: 2010-11-05 00:25:00

Version Info:

0: [No Data]

Generik.LTCYFAX also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Small.lxzy
MicroWorld-eScanTrojan.GenericKDZ.98156
ClamAVWin.Malware.Zusy-10005355-0
FireEyeGeneric.mg.b49600417810bd52
Cylanceunsafe
SangforVirus_Suspicious.Win32.Sality.bh
K7AntiVirusTrojan ( 001cddbb1 )
AlibabaVirus:Win32/Sality.7830433b
K7GWTrojan ( 001cddbb1 )
CrowdStrikewin/malicious_confidence_100% (W)
VirITWin32.Sality.BI
CyrenW32/SmallTrojan.DE.gen!Eldorado
SymantecW32.Sality.AE
Elasticmalicious (high confidence)
ESET-NOD32a variant of Generik.LTCYFAX
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.GenericKDZ.98156
AvastWin32:Agent-APKD [Trj]
TencentMalware.Win32.Gencirc.13ed769b
EmsisoftTrojan.GenericKDZ.98156 (B)
BaiduWin32.Trojan.Small.a
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.Siggen6.18140
VIPRETrojan.GenericKDZ.98156
TrendMicroPE_SALITY.ER-O
McAfee-GW-EditionBehavesLike.Win32.Generic.lh
Trapminemalicious.high.ml.score
SophosMal/Agent-ABC
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.57G9SI
JiangminWin32/HLLP.Kuku.poly2
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.Small.aljd
XcitiumTrojWare.Win32.Salrenmetie.A@4w2swt
ArcabitTrojan.Generic.D17F6C
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftVirus:Win32/Sality.gen!AT
GoogleDetected
Acronissuspicious
ALYacTrojan.GenericKDZ.98156
MAXmalware (ai score=82)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/CI.A
TrendMicro-HouseCallPE_SALITY.ER-O
RisingVirus.Sality/Debris!1.A12C (CLASSIC)
IkarusTrojan.Win32.Salrenmetie
MaxSecureVirus.Mabezat.Dam
FortinetW32/CoinMiner.BH
AVGWin32:Agent-APKD [Trj]
DeepInstinctMALICIOUS

How to remove Generik.LTCYFAX?

Generik.LTCYFAX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment