Malware

Genie.52 removal guide

Malware Removal

The Genie.52 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Genie.52 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Genie.52?


File Info:

name: 7626C1EDB322FB2C20BA.mlw
path: /opt/CAPEv2/storage/binaries/9c7192fb4faf83769549c639327717087ae40fea5831f9ef02e561676d359386
crc32: 5CBCD1E4
md5: 7626c1edb322fb2c20ba78c93452cfdb
sha1: c056298b2586c8dd648364beb9a4499b12977729
sha256: 9c7192fb4faf83769549c639327717087ae40fea5831f9ef02e561676d359386
sha512: 5f71f8769e971568143f1ed96dfc7b8ffdc4b62c6c7a4312a384d82db3c9a11fe684dc11e3469c2fb0909adf462c93344efa4834c590c80826aacd6986f875b8
ssdeep: 3072:jmVW8iTX/3RfldjjXq1+0cxxsWEL02fXcIp08MoeuDSQ:aM7jJlRexYTHYZMW
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T13CE38D03B9A2E435E0D006B49E36FEE8BA3B74F11F746157BAEC6F0D1A34190993D646
sha3_384: 160d8e2ec4a49eea1f082f4836e833d8f0474149bd3c8b5cbf930be5f79138b16a1010db70978d1f8d40646e162620a7
ep_bytes: 558bec83c4e433c08945e88945ecb8d8
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Genie.52 also known as:

BkavW32.FamVT.PicsysK.Worm
MicroWorld-eScanGen:Variant.Genie.52
CAT-QuickHealWorm.Picsys.CC1
SkyhighBehavesLike.Win32.Backdoor.ch
McAfeeW32/Picsys.worm!7626C1EDB322
MalwarebytesGeneric.Malware.AI.DDS
VIPREGen:Variant.Genie.52
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 00500e151 )
K7GWTrojan ( 00500e151 )
Cybereasonmalicious.b2586c
BaiduWin32.Worm.Picsys.a
VirITWorm.Win32.PicSys.A
SymantecW32.HLLW.Yoof
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Picsys.F
APEXMalicious
CynetMalicious (score: 100)
KasperskyP2P-Worm.Win32.Picsys.c
BitDefenderGen:Variant.Genie.52
NANO-AntivirusTrojan.Win32.Sock4Proxy.jpdexe
SUPERAntiSpywareWorm.Agent/Variant
AvastWin32:TrojanX-gen [Trj]
TencentWorm.Win32.Picsys.a
SophosW32/Picsys-C
F-SecureWorm.WORM/Picsys.C.53
DrWebWin32.HLLW.Morpheus.3
ZillyaWorm.Picsys.Win32.5
TrendMicroWORM_SPYBOT.PA
EmsisoftGen:Variant.Genie.52 (B)
SentinelOneStatic AI – Malicious PE
JiangminWorm/Picsys.a
WebrootW32.Rogue.Gen
AviraWORM/Picsys.C.53
Antiy-AVLWorm[P2P]/Win32.Picsys
Kingsoftmalware.kb.a.993
XcitiumBackdoor.Win32.Poison.DJH@4kvwk0
ArcabitTrojan.Genie.52
ViRobotWorm.Win32.A.P2P-Picsys.71011
ZoneAlarmP2P-Worm.Win32.Picsys.c
GDataWin32.Worm.Picsys.A
VaristW32/Trojan.FWG.gen!Eldorado
AhnLab-V3Worm/Win.Picsys.C5452528
BitDefenderThetaGen:NN.ZelphiF.36680.jGY@aelJKDcc
TACHYONWorm/W32.Picsys
VBA32BScope.Backdoor.Sixer
Cylanceunsafe
PandaW32/Picsys.A.worm
ZonerTrojan.Win32.22068
TrendMicro-HouseCallWORM_SPYBOT.PA
RisingWorm.Picsys!1.C132 (CLASSIC)
IkarusWorm.Win32.Picsys
FortinetW32/Picsys.D!worm
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Genie.52?

Genie.52 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment