Malware

Generik.RBUBSO removal

Malware Removal

The Generik.RBUBSO is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.RBUBSO virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Generik.RBUBSO?


File Info:

name: 0F1519427C87578ED23D.mlw
path: /opt/CAPEv2/storage/binaries/48e6298eda7862fc9fc911afc9c938e755b8dbae2d42e9eec302f393addc37a5
crc32: 723EE53C
md5: 0f1519427c87578ed23d26499ca2e462
sha1: acfec4e9ab0b518eb2ceec39f8fb7d7962654b32
sha256: 48e6298eda7862fc9fc911afc9c938e755b8dbae2d42e9eec302f393addc37a5
sha512: b822d088eb6c12a4c5a6032f52704bbe290ca8beab47837edeff2c9b073a02be8617e0af976d5ebd968e033aa386f5504552ad9ebf910f6b4fd613eab793b689
ssdeep: 768:20vdNL9vUupWcNa8Zz5iQlmxQuoKgPvkHVyXU:20vdNLtUuFNa8Zz5iQlmxFoKgXk1
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14B731AA11E32481EC96E1F3677E45625E6A18849132E8B343F8CD02FEF912854E7DF97
sha3_384: be256de6e251bb722209e6708be813a9aebb22e858927bf840237ad0717a8e39186ae06ddf38c67fdcb6bf8b3777d25e
ep_bytes: 60be00d047008dbe0040f8ff57eb0b90
timestamp: 2015-01-28 13:36:24

Version Info:

0: [No Data]

Generik.RBUBSO also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Scar.tpJv
MicroWorld-eScanTrojan.Agent.DQQW
ClamAVWin.Malware.Dqqw-9951425-0
FireEyeGeneric.mg.0f1519427c87578e
ALYacTrojan.Agent.DQQW
Cylanceunsafe
ZillyaTrojan.Agent.Win32.3558669
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005a7ef01 )
AlibabaTrojan:Win32/QQSteal.c6b5e667
K7GWTrojan ( 005a7ef01 )
CrowdStrikewin/malicious_confidence_90% (W)
BitDefenderThetaGen:NN.ZexaF.36662.emW@aa@NT9d
CyrenW32/Agent.EIRS-5743
SymantecSMG.Heur!gen
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of Generik.RBUBSO
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Agent.DQQW
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.Generik.e
EmsisoftTrojan.Agent.DQQW (B)
F-SecureTrojan.TR/PSW.QQSteal.boeu
VIPRETrojan.Agent.DQQW
TrendMicroTROJ_GEN.R002C0OFC23
McAfee-GW-EditionBehavesLike.Win32.Generic.lz
Trapminemalicious.moderate.ml.score
SophosMal/QQPass-O
IkarusTrojan.SuspectCRC
GDataWin32.Trojan.PSE.19CENXV
JiangminTrojan.Generic.hdvty
AviraTR/PSW.QQSteal.boeu
XcitiumPacked.Win32.MUPX.Gen@24tbus
ArcabitTrojan.Agent.DQQW
SUPERAntiSpywareTrojan.Agent/Gen-Downloader
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojan:Win32/Vindor!pz
GoogleDetected
AhnLab-V3Trojan/Win32.Agent.R135706
Acronissuspicious
MAXmalware (ai score=100)
MalwarebytesGeneric.Malware.Agent.DDS
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0OFC23
RisingTrojan.Kryptik!1.BC24 (CLASSIC)
YandexTrojan.Agent!7yhb1Blv7C8
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/ULPM.2C75!tr
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS

How to remove Generik.RBUBSO?

Generik.RBUBSO removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment