Malware

How to remove “Generik.NLGUNBJ”?

Malware Removal

The Generik.NLGUNBJ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.NLGUNBJ virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Mimics the system’s user agent string for its own requests
  • Expresses interest in specific running processes
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generik.NLGUNBJ?


File Info:

crc32: 995F1FB1
md5: 3c1bdf5a8d7995de7f179d3570b7c8b3
name: 3C1BDF5A8D7995DE7F179D3570B7C8B3.mlw
sha1: dda0452fd7349c032d831df375af4f148929d45c
sha256: b987c6aa181b9b64e7cfbf2b450372526fa6cea5e5f7d38bc06b1a88bcab4d43
sha512: 0198ce8138bf1a289f7997be42b7a713a1ac271a138a8686c1a09addc370e06db13a6c57a6df8cc1c3db64d0140a45adbfb318feaebfc14da8a9dcc8ab6bff10
ssdeep: 12288:w3zKxZ14g1hxgsjtuEiiSFdgiAbj1qiua2gB3BSVyfYzP:a2Z1CEiTFJAbZqoBx4yKP
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generik.NLGUNBJ also known as:

BkavW32.AIDetectVM.malware2
MicroWorld-eScanTrojan.GenericKD.45262362
FireEyeTrojan.GenericKD.45262362
ALYacTrojan.GenericKD.45262362
SangforMalware
K7AntiVirusTrojan ( 0057530f1 )
BitDefenderTrojan.GenericKD.45262362
K7GWTrojan ( 0057530f1 )
CrowdStrikewin/malicious_confidence_60% (D)
CyrenW32/Emotet.AZV.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.NLGUNBJ
APEXMalicious
AvastWin32:BankerX-gen [Trj]
KasperskyTrojan-Banker.Win32.Emotet.geru
AlibabaTrojan:Win32/EmotetCrypt.cbdf7578
RisingTrojan.Emotet!1.D0CC (CLASSIC)
Ad-AwareTrojan.GenericKD.45262362
SophosTroj/Emotet-CVA
ComodoMalware@#1oxy6tlmhzmpy
DrWebTrojan.Emotet.1071
McAfee-GW-EditionBehavesLike.Win32.Generic.gc
EmsisoftTrojan.Emotet (A)
JiangminTrojan.Banker.Emotet.pyl
KingsoftWin32.Troj.Banker.(kcloud)
MicrosoftTrojan:Win32/EmotetCrypt.PEF!MTB
GridinsoftRansom.Win32.Wacatac.oa!s1
ArcabitTrojan.Generic.D2B2A61A
ZoneAlarmTrojan-Banker.Win32.Emotet.geru
GDataTrojan.GenericKD.45262362
CynetMalicious (score: 100)
McAfeeGenericRXNE-NA!3C1BDF5A8D79
MAXmalware (ai score=85)
VBA32Trojan.Emotet
MalwarebytesTrojan.Emotet
TencentWin32.Trojan-banker.Emotet.Ljuh
IkarusTrojan-Banker.Emotet
FortinetW32/Generik.NLGUNBJ!tr
AVGWin32:BankerX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Generic/HEUR/QVM30.2.496D.Malware.Gen

How to remove Generik.NLGUNBJ?

Generik.NLGUNBJ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment