Malware

Genie.479 removal instruction

Malware Removal

The Genie.479 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Genie.479 virus can do?

  • Sample contains Overlay data
  • Uses Windows utilities for basic functionality
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Genie.479?


File Info:

name: F701A261EC3614A41A8A.mlw
path: /opt/CAPEv2/storage/binaries/e60b9637f2da5252f551465c313326245d836750b3d6340d08d4ac9555b6befe
crc32: 3E042D35
md5: f701a261ec3614a41a8a7df2b6830b98
sha1: 21d047943cba1864348665ec0f14d503540df60d
sha256: e60b9637f2da5252f551465c313326245d836750b3d6340d08d4ac9555b6befe
sha512: eb1241c3c1b3701c43569a1356734986c54745aae3f59e34e43a8e422170fdc0d7403ef72337a58a400db42c55f410db9981d73904ef082127ee9ac6c26d4a1d
ssdeep: 98304:WZse7VcrPZseZdZse7VcrPZseZdZse7VcrPZseZdZse7VcrPZseZdZse7VcrPZsI:5qLFqLFqLFqLFqLFqLFqLFqLD
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C0A6AF3AF6D0C437C1236E78CC5BD259A825BEE02D1924877BE92D4DDF39782342A197
sha3_384: dc3724d8db7d8bd8edc15e0780bb0ef7c8cfdf71f385dab137a27d349304f59778b2456932790c90e8fca5d7cb9971bb
ep_bytes: 558becb9280000006a006a004975f953
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Genie.479 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Agent.top9
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Genie.479
FireEyeGeneric.mg.f701a261ec3614a4
CAT-QuickHealTrojan.GenericPMF.S24581240
SkyhighBehavesLike.Win32.Generic.th
ALYacGen:Variant.Genie.479
Cylanceunsafe
VIPREGen:Variant.Genie.479
SangforRansom.Win32.Save.a
K7AntiVirusTrojan ( 005896cb1 )
AlibabaTrojan:Win32/Starter.ali1001008
K7GWTrojan ( 003cee3e1 )
Cybereasonmalicious.1ec361
SymantecSMG.Heur!gen
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Injector.TXR
APEXMalicious
ClamAVWin.Malware.Midie-9816731-0
KasperskyTrojan.Win32.Agent.spvx
BitDefenderGen:Variant.Genie.479
NANO-AntivirusTrojan.Win32.Agent.cscaqs
AvastWin32:MBRlock-DV [Trj]
TencentTrojan.Win32.Agent.ha
TACHYONTrojan/W32.DP-Agent.9584640
EmsisoftGen:Variant.Genie.479 (B)
GoogleDetected
F-SecureTrojan.TR/Inject.sbbeiuu
DrWebTrojan.Inject1.5890
Trapminemalicious.moderate.ml.score
SophosTroj/DelfInj-FF
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Agent.gbto
VaristW32/Agent.AKD.gen!Eldorado
AviraTR/Inject.sbbeiuu
Antiy-AVLGrayWare/Win32.Dropper.xuq
MicrosoftTrojan:Win32/Vindor!pz
ArcabitTrojan.Genie.479
ViRobotTrojan.Win32.A.Agent.1259520
ZoneAlarmTrojan.Win32.Agent.spvx
GDataWin32.Trojan.PSE.8QQ7ZF
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Agent.R174319
McAfeeGenericR-FYS!F701A261EC36
MAXmalware (ai score=81)
VBA32Trojan.Agent
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/CI.A
RisingTrojan.Injector!1.DA79 (CLASSIC)
YandexTrojan.Agent!zMQjfCGd/mo
IkarusTrojan.Win32.Agent
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Dropper.XUQ!tr
BitDefenderThetaAI:Packer.FACBA3B421
AVGWin32:MBRlock-DV [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)
alibabacloudTrojan.Win.UnkAgent

How to remove Genie.479?

Genie.479 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment