Malware

Generik.MOXKCKQ (file analysis)

Malware Removal

The Generik.MOXKCKQ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.MOXKCKQ virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Generik.MOXKCKQ?


File Info:

name: 4A8BF22BFDCDA4D84C84.mlw
path: /opt/CAPEv2/storage/binaries/8ca8d915c046714828243f0b3d5cd9f34ad7fcfd8d8f6ba8e609dec3092c241c
crc32: 0E8E6D92
md5: 4a8bf22bfdcda4d84c8476aba18f98f5
sha1: 9ceae8faccdb9c5db0457daae6df109156fd9191
sha256: 8ca8d915c046714828243f0b3d5cd9f34ad7fcfd8d8f6ba8e609dec3092c241c
sha512: da5fa3b3681754ba9fef6db731359ed5bd55f2197e979bc80f3ed315348dd4ed67bd56d279cc7a7833f0cb9cd01749112e07182023a816631311d6eebb3da496
ssdeep: 12288:ckhJk+aQgKT5HQm8xawMcMlkCIabjKoh9WXz:ckhJkoTVQ1YkCIabjKoh9Wj
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T1C535B21FEF508F64D45911B674AAC32F9AA1BD9804025316B769BF29E731F3033EB225
sha3_384: 1a4040eae8c3a556b01a2f3ca0cc705c2ec26da6a0a336f04df17bd78ea24fecf8d133a9dbeb2d46455b6d8c6ee64fb3
ep_bytes: 4883ec28488d0de50a0000e8e0040000
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Generik.MOXKCKQ also known as:

LionicWorm.Win32.AutoRun.o!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Agent.FQKM
FireEyeTrojan.Agent.FQKM
McAfeeArtemis!4A8BF22BFDCD
MalwarebytesMalware.AI.3696146603
ZillyaWorm.AutoRun.Win32.170360
K7AntiVirusRiskware ( 0040eff71 )
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.bfdcda
CyrenW64/Autorun.EP.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Generik.MOXKCKQ
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Worm.Vindor-9886047-0
KasperskyUDS:Worm.Win32.AutoRun.vx
BitDefenderTrojan.Agent.FQKM
AvastWin32:VB-FBX
SophosMal/Generic-S
DrWebWin32.HLLW.Autoruner.547
McAfee-GW-EditionArtemis!Trojan
EmsisoftTrojan.Agent.FQKM (B)
IkarusTrojan.Dropper
GDataTrojan.Agent.FQKM
JiangminPacked.Krap.gvyf
AviraHEUR/AGEN.1145262
Antiy-AVLTrojan/Generic.ASMalwS.34937C8
GridinsoftRansom.Win64.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
BitDefenderThetaAI:Packer.DFF53E5D1C
ALYacTrojan.Agent.FQKM
MAXmalware (ai score=82)
TrendMicro-HouseCallTROJ_GEN.R03BH0CL221
RisingWorm.VB!1.DA41 (CLASSIC)
MaxSecureTrojan.Malware.121218.susgen
FortinetW64/Agent.EP!tr
AVGWin32:VB-FBX

How to remove Generik.MOXKCKQ?

Generik.MOXKCKQ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment