Malware

How to remove “GenScript.JUJ”?

Malware Removal

The GenScript.JUJ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What GenScript.JUJ virus can do?

  • The office file contains 2 macros
  • The office file contains a macro with auto execution
  • The office file contains anomalous features
  • The office file contains a macro with suspicious strings

Related domains:

z.whorecord.xyz

How to determine GenScript.JUJ?


File Info:

crc32: 07D2DD54
md5: 1f89dca72a99f38e8f502a6f6c6c7b70
name: upload_file
sha1: 5997c16d4af9a3192c11f62fc24a81d197e898e1
sha256: 047dad648533fbc9a30ae5bbec1143b463ed7edc0e2982fcf964f609905e524e
sha512: 9fcf518ed10b18c85b95d666f7afb771869ebd7e45eba6188e4a37c59b3d042ddc468cb5aa57f58b228e793716e9fa65cee1ae74552efc855031cb41beb78777
ssdeep: 3072:C4PrXcuQuvpzm4bkiaMQgAlSoWpq5vnwS25:jDRv1m4bnQgISoQq5vnwp5
type: Composite Document File V2 Document, Little Endian, Os: Windows, Version 6.2, Code page: 1252, Title: Nihil., Author: Adam Brun, Template: Normal.dotm, Revision Number: 1, Name of Creating Application: Microsoft Office Word, Create Time/Date: Tue Aug 18 13:34:00 2020, Last Saved Time/Date: Tue Aug 18 13:34:00 2020, Number of Pages: 1, Number of Words: 4, Number of Characters: 27, Security: 0

Version Info:

0: [No Data]

GenScript.JUJ also known as:

Elasticmalicious (high confidence)
DrWebExploit.Siggen2.23122
MicroWorld-eScanVB:Trojan.VBA.Agent.BGK
FireEyeVB:Trojan.VBA.Agent.BGK
CAT-QuickHealOLE.Emotet.38784
ALYacTrojan.Downloader.DOC.Gen
AegisLabTrojan.MSOffice.SAgent.4!c
K7AntiVirusTrojan ( 0056c3f41 )
K7GWTrojan ( 0056c3f41 )
CyrenW97M/Downldr.IE.gen!Eldorado
SymantecW97M.Downloader
TrendMicro-HouseCallTROJ_GEN.F04IE00HL20
AvastScript:SNH-gen [Trj]
ClamAVDoc.Downloader.Emotet-9374561-0
KasperskyHEUR:Trojan.MSOffice.SAgent.gen
BitDefenderVB:Trojan.VBA.Agent.BGK
ViRobotDOC.Z.Agent.178532.B
TencentHeur.Macro.Generic.h.e1686120
Ad-AwareVB:Trojan.VBA.Agent.BGK
Comodo.UnclassifiedMalware@0
F-SecureMalware.W97M/Agent.3995119
TrendMicroTROJ_GEN.F04IE00HL20
SophosTroj/DocDl-AAGJ
AviraW97M/Agent.3995119
Antiy-AVLTrojan[Downloader]/MSOffice.Agent.juj
MicrosoftTrojanDownloader:O97M/Emotet.CSK!MTB
ArcabitVB:Trojan.VBA.Agent.BGK
ZoneAlarmHEUR:Trojan.MSOffice.SAgent.gen
GDataVB:Trojan.VBA.Agent.BGK
CynetMalicious (score: 85)
AhnLab-V3Downloader/MSOffice.Generic
McAfeeW97M/Downloader.ddv
ZonerProbably Heur.W97Obfuscated
ESET-NOD32GenScript.JUJ
RisingMalware.ObfusVBA@ML.99 (VBA)
MAXmalware (ai score=100)
FortinetVBA/Agent.GC!tr.dldr
AVGScript:SNH-gen [Trj]
Qihoo-360virus.office.qexvmc.1075

How to remove GenScript.JUJ?

GenScript.JUJ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment