Malware

Generik.LWMKEUJ (file analysis)

Malware Removal

The Generik.LWMKEUJ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.LWMKEUJ virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine Generik.LWMKEUJ?


File Info:

crc32: 69E80D99
md5: 6e085d0bf48880b686fff4e269265d55
name: 6E085D0BF48880B686FFF4E269265D55.mlw
sha1: 44f651956cd5e6d553fd690278959ceacc57ce20
sha256: 801dfe060be8fb9c3bcedb755cd26ff9ee273304ed023f76fa8320fa113f171d
sha512: 401a94e296714cbd62ee325b885c6699c9e51d5614ae04303bf2ea23d6bea032d00b7a604f66467e4074cbf93f4869a389b8f8db3c9f54b00e51caf039a3a783
ssdeep: 24576:NLQGqY9Rq8gMU9yoAmMVXXt5GX3hR/XzwhEuwWPTrwe0:Vq408gMUooAroJXzKtTL0
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: hjx8bcax65adx7a0bx5e8f
FileVersion: 1.0.0.0
CompanyName: hj
Comments: hjx8bcax65adx7a0bx5e8f
ProductName: hjx8bcax65adx7a0bx5e8f
ProductVersion: 1.0.0.0
FileDescription: hjx8bcax65adx7a0bx5e8f
Translation: 0x0804 0x04b0

Generik.LWMKEUJ also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Obfuscated.based.1
CynetMalicious (score: 100)
ALYacGen:Trojan.Heur.ev3@I4VvX2gb
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaTrojan:Win32/Obfuscated.cc0ed291
K7GWTrojan ( 0052c8a31 )
K7AntiVirusTrojan ( 0052c8a31 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.LWMKEUJ
APEXMalicious
AvastWin32:Malware-gen
BitDefenderGen:Trojan.Heur.ev3@I4VvX2gb
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
MicroWorld-eScanGen:Trojan.Heur.ev3@I4VvX2gb
TencentWin32.Trojan.Dropper.Wozw
Ad-AwareGen:Trojan.Heur.ev3@I4VvX2gb
SophosML/PE-A
ComodoMalware@#31vvcb6w7p6bt
BitDefenderThetaGen:NN.ZexaF.34628.ev3@a4VvX2gb
VIPRETrojan-Dropper.Win32.Resdro.b (v) (not malicious)
McAfee-GW-EditionBehavesLike.Win32.BadFile.tc
FireEyeGeneric.mg.6e085d0bf48880b6
EmsisoftGen:Trojan.Heur.ev3@I4VvX2gb (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.Gen
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/Occamy.C80
ArcabitTrojan.Heur.EBE1A7
AegisLabTrojan.Win32.Generic.4!c
GDataGen:Trojan.Heur.ev3@I4VvX2gb
Acronissuspicious
McAfeeArtemis!6E085D0BF488
MAXmalware (ai score=95)
RisingDropper.Generic!8.35E (CLOUD)
IkarusTrojan.Dropper
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Filecoder.FV!tr.ransom
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/TrojanDropper.Generic.HxMBEpsA

How to remove Generik.LWMKEUJ?

Generik.LWMKEUJ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment