Malware

Generik.NVRUNKT (file analysis)

Malware Removal

The Generik.NVRUNKT is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.NVRUNKT virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Generik.NVRUNKT?


File Info:

name: 4B60B1E0D5154A01532E.mlw
path: /opt/CAPEv2/storage/binaries/76447790219a1ec36ea643734eb090ab7da79e9c1967c9fdfabc15adf4e5fd9f
crc32: C482D379
md5: 4b60b1e0d5154a01532eff79ff5ed7e7
sha1: ebde211f286de7a748d93df0055e505e56dad550
sha256: 76447790219a1ec36ea643734eb090ab7da79e9c1967c9fdfabc15adf4e5fd9f
sha512: f0c3fa87ae971671e69931b49076036d8d1955627703bd4e8a55b22ea33f22f4b1e58c75b6de770c61d45450598ddd593fbbce8263cd9a488f41ef6bc2d13287
ssdeep: 12288:cJk+aQgKTLF2tSiQyuUNFt+StAwSfxL/2Dc3jDLLmt0LDQewsAjR73zK:cJkoTLc8iHNFpeaewsAjI
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T1DD253C01972240A3D26538B1C45ABB480664AFF43F63E6A7FE547506FE72BC215336BE
sha3_384: 9f0936820a906e5fe2ab5c99f02ad44d3e92bd3ca83a4c7a105341b72bf99ca43a47dce9faff05890a74802d7c3f00d4
ep_bytes: 4883ec28488d0de50a0000e8e0040000
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Generik.NVRUNKT also known as:

Elasticmalicious (high confidence)
DrWebWin32.HLLW.Autoruner.547
MicroWorld-eScanGen:Variant.Fragtor.45393
FireEyeGen:Variant.Fragtor.45393
McAfeeRDN/Autorun.worm.gen
CylanceUnsafe
ZillyaWorm.AutoRun.Win32.170360
SangforTrojan.Win32.Save.a
K7AntiVirusRiskware ( 0040eff71 )
AlibabaTrojanDropper:Win32/Autorun.c6bafee9
K7GWRiskware ( 0040eff71 )
CyrenW64/Autorun.EP.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Generik.NVRUNKT
TrendMicro-HouseCallTROJ_GEN.R03BC0PL321
Paloaltogeneric.ml
ClamAVWin.Ransomware.WannaCry-9856297-0
KasperskyWorm.Win32.AutoRun.vx
BitDefenderGen:Variant.Fragtor.45393
NANO-AntivirusTrojan.Win32.AutoRun.iwqnep
AvastWin64:Malware-gen
SophosMal/Generic-S
TrendMicroTROJ_GEN.R03BC0PL321
McAfee-GW-EditionBehavesLike.Win64.Suspicious.dh
EmsisoftGen:Variant.Fragtor.45393 (B)
GDataGen:Variant.Fragtor.45393
AviraTR/Dropper.Gen
MAXmalware (ai score=88)
Antiy-AVLTrojan/Generic.ASMalwS.34937C8
GridinsoftRansom.Win64.Sabsik.sa
ViRobotTrojan.Win32.Z.Autorun.981386
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
ALYacGen:Variant.Fragtor.45393
MalwarebytesMalware.AI.3696146603
APEXMalicious
RisingWorm.VB!1.DA41 (CLASSIC)
IkarusTrojan.Dropper
FortinetW64/Agent.EP!tr
AVGWin64:Malware-gen

How to remove Generik.NVRUNKT?

Generik.NVRUNKT removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment