Malware

About “Generik.MDPDTSZ” infection

Malware Removal

The Generik.MDPDTSZ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.MDPDTSZ virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs

How to determine Generik.MDPDTSZ?


File Info:

crc32: 03B2A453
md5: ba93a2a336fb2369cca71b5e10f58a03
name: BA93A2A336FB2369CCA71B5E10F58A03.mlw
sha1: 98e6ee3026a26cbdf7b42191622b5ac45762bff2
sha256: 19e4e36385b8dc437a963d8422999bc82089f3adddc59d746be998b2a6620008
sha512: dfa77c7f9401f052ff962cea69cb4dd72cfa65b33843f3604db592294a33f31d958b5713b1d559aee88e6238adc4bdc37a74fdefc7ca10bf72c6ffade64e3c74
ssdeep: 6144:MrojxaiTSjo6KCD4SLNdcrvUL11Nup7RGv7qwoSavQ9G/JRt7g0g:vjxaqO5KC1Qcc7G2ZtiGxY
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
FileVersion:
CompanyName: 11413
Comments: This installation was built with Inno Setup.
ProductName: 11413
ProductVersion: 1.0.0.3
FileDescription: 11413 Setup
Translation: 0x0000 0x04b0

Generik.MDPDTSZ also known as:

K7AntiVirusTrojan-Downloader ( 0001e3c01 )
LionicHacktool.Win32.BypassUAC.3!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader26.53573
CynetMalicious (score: 99)
ALYacTrojan.GenericKD.37925384
CylanceUnsafe
SangforExploit.Win32.BypassUAC.naq
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaExploit:Win32/BypassUAC.462b32e1
K7GWTrojan-Downloader ( 0001e3c01 )
Cybereasonmalicious.026a26
CyrenW32/Agent.ARX.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Generik.MDPDTSZ
APEXMalicious
AvastWin32:Malware-gen
KasperskyExploit.Win32.BypassUAC.naq
BitDefenderTrojan.GenericKD.37925384
NANO-AntivirusExploit.Win32.BypassUAC.ffbfjo
MicroWorld-eScanTrojan.GenericKD.37925384
TencentWin32.Exploit.Bypassuac.Phpz
Ad-AwareTrojan.GenericKD.37925384
SophosMal/Generic-S
ComodoMalware@#kmwv5ge9zlip
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0PK121
McAfee-GW-EditionPUP-GZR
FireEyeTrojan.GenericKD.37925384
EmsisoftTrojan.GenericKD.37925384 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1124690
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Generic.D242B208
GDataTrojan.GenericKD.37925384
TACHYONTrojan-Exploit/W32.BypassUAC.310864
AhnLab-V3Malware/Gen.Generic.C2580828
McAfeePUP-GZR
MAXmalware (ai score=80)
VBA32Exploit.BypassUAC
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0PK121
YandexExploit.BypassUAC!3a1A5/4FxxY
IkarusTrojan.Downloader.Inno.Agent
FortinetW32/Agent.EBX!tr.dldr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Generik.MDPDTSZ?

Generik.MDPDTSZ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment