Malware

Generik.MFMXHWS removal instruction

Malware Removal

The Generik.MFMXHWS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.MFMXHWS virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Generik.MFMXHWS?


File Info:

crc32: 2D4FBC8D
md5: 19051a2ab285284f277ec3c35bf3784f
name: 19051A2AB285284F277EC3C35BF3784F.mlw
sha1: bf0c7dac253ef3a1229103066b6be4c5f87e4939
sha256: 1d35fbe1961f63fcc426c5a332d5dfc93dd051ecdfd17ea47790f80f22171ce1
sha512: 3f898dd4cc2640a7fdd453cc797bdc3591975336acaeecda1053e8ad47b8cbb970ad2e52bde05f548b12c36036cc87eab5cf7571d96fc74019520cecbd9dfc0b
ssdeep: 24576:MRbTgsGg2xIjzfpZ3cB8iuggQST0sDdm:mbssG9xI3fp9ARugaT0Ad
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: xa9 2017 - 2020 McDonald's. All Rights Reserved
Assembly Version: 6.4.0.1
InternalName: IEnvoyInfo.exe
FileVersion: 6.4.0.1
CompanyName: McDonolds
LegalTrademarks:
Comments:
ProductName: McDonolds POS
ProductVersion: 6.4.0.1
FileDescription: McDonolds POS
OriginalFilename: IEnvoyInfo.exe

Generik.MFMXHWS also known as:

Elasticmalicious (high confidence)
DrWebTrojan.Packed2.42726
MicroWorld-eScanGen:Variant.Bulz.249971
FireEyeGeneric.mg.19051a2ab285284f
ALYacGen:Variant.Bulz.249971
CylanceUnsafe
AegisLabTrojan.MSIL.Androm.m!c
SangforMalware
BitDefenderGen:Variant.Bulz.249971
Cybereasonmalicious.c253ef
BitDefenderThetaGen:NN.ZemsilF.34670.hn0@a4irfyi
CyrenW32/MSIL_Kryptik.CIP.gen!Eldorado
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallBackdoor.MSIL.ANDROM.THLOEBO
AvastWin32:PWSX-gen [Trj]
KasperskyHEUR:Backdoor.MSIL.Androm.gen
TencentWin32.Trojan.Inject.Auto
Ad-AwareGen:Variant.Bulz.249971
EmsisoftGen:Variant.Bulz.249971 (B)
F-SecureHeuristic.HEUR/AGEN.1138648
TrendMicroBackdoor.MSIL.ANDROM.THLOEBO
McAfee-GW-EditionArtemis!Trojan
SophosMal/Generic-S
IkarusWin32.SuspectCrc
MaxSecureTrojan.Malware.300983.susgen
AviraHEUR/AGEN.1138648
MAXmalware (ai score=85)
Antiy-AVLGrayWare/Win32.VKontakteDJ.a
KingsoftWin32.Hack.Undef.(kcloud)
MicrosoftTrojan:Win32/Ymacco.AA1D
ArcabitTrojan.Bulz.D3D073
ZoneAlarmHEUR:Backdoor.MSIL.Androm.gen
GDataGen:Variant.Bulz.249971
CynetMalicious (score: 100)
McAfeePWS-FCTY!19051A2AB285
MalwarebytesSpyware.AgentTesla
APEXMalicious
ESET-NOD32a variant of Generik.MFMXHWS
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetMSIL/Kryptik.YXC!tr
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Generic/Backdoor.9cf

How to remove Generik.MFMXHWS?

Generik.MFMXHWS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment