Malware

Generik.MSQXIJH malicious file

Malware Removal

The Generik.MSQXIJH is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.MSQXIJH virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Checks for the presence of known windows from debuggers and forensic tools
  • Checks for the presence of known devices from debuggers and forensic tools
  • Anomalous binary characteristics

How to determine Generik.MSQXIJH?


File Info:

crc32: 74BA3AD3
md5: 6cd85493175f0bd16a3a6a9ff68ce7a2
name: 6CD85493175F0BD16A3A6A9FF68CE7A2.mlw
sha1: 7e6e790fc89b8897aa4ccac009458be05356e6c3
sha256: 748c0a5061708fb59a8e22a7ecf42e3873187da9584390534a06d0c7bd03b298
sha512: 2209bfa0845094de3aa5586c7633f29877785b1da542f37d6ce064817622dc740dbf2c21c77ebe4dc999857a04429157ad0b3ca348045979dc0fef05acb65f02
ssdeep: 12288:YPge107oiaKKjifNnij0zNfhLW4FRDAzcI27oY8NWkg22:O131bif0j0n7D3Ine9
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0804 0x04b0
LegalCopyright: x6df1x5733x5e02x4efbx7f51x6e38x79d1x6280x53d1x5c55x6709x9650x516cx53f8
InternalName: RwyClient
FileVersion: 10.02.0005
CompanyName: x6df1x5733x5e02x4efbx7f51x6e38x79d1x6280x53d1x5c55x6709x9650x516cx53f8
Comments: RwyClient
ProductName: RwyClient
ProductVersion: 10.02.0005
FileDescription: RwyClient
OriginalFilename: RwyClient.exe

Generik.MSQXIJH also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0052c8a31 )
Elasticmalicious (high confidence)
DrWebTrojan.Obfuscated.based.1
CynetMalicious (score: 90)
ALYacTrojan.GenericKD.4004577
CylanceUnsafe
ZillyaBackdoor.PePatch.Win32.111322
SangforTrojan.Win32.565248.5
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaTrojan:Win32/Zegost.833b7b1b
K7GWTrojan ( 0052c8a31 )
Cybereasonmalicious.3175f0
CyrenW32/Rbot.J.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.MSQXIJH
APEXMalicious
AvastWin32:Malware-gen
BitDefenderTrojan.GenericKD.4004577
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
MicroWorld-eScanTrojan.GenericKD.4004577
TencentMalware.Win32.Gencirc.114c6977
Ad-AwareTrojan.GenericKD.4004577
SophosMal/Generic-R + Troj/Zegost-U
ComodoMalware@#2f17vtmouubcr
BitDefenderThetaGen:NN.ZevbaF.34670.Iu0@aiv36Mdb
VIPRETrojan-Dropper.Win32.Resdro.b (v) (not malicious)
McAfee-GW-EditionBehavesLike.Win32.Backdoor.hc
FireEyeGeneric.mg.6cd85493175f0bd1
EmsisoftTrojan.GenericKD.4004577 (B)
SentinelOneStatic AI – Malicious PE
KingsoftWin32.Heur.KVM011.a.(kcloud)
MicrosoftTrojan:Win32/Tnega!ml
GDataTrojan.GenericKD.4004577
Acronissuspicious
McAfeeBackDoor-EXZ
MAXmalware (ai score=82)
RisingTrojan.Tiggre!8.ED98 (CLOUD)
YandexTrojan.GenAsa!/aBel4AM674
FortinetW32/Filecoder.FV!tr.ransom
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Generik.MSQXIJH?

Generik.MSQXIJH removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment