Malware

About “GenScript.JVD” infection

Malware Removal

The GenScript.JVD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What GenScript.JVD virus can do?

  • The office file contains 2 macros
  • The office file contains a macro with auto execution
  • The office file contains anomalous features
  • The office file contains a macro with suspicious strings

How to determine GenScript.JVD?


File Info:

crc32: FE0100D6
md5: 2c9091fcbb7bc8835c0b75b4c698b687
name: upload_file
sha1: 90db5522b4b3d9b0c5bbd461ed73b217dc686387
sha256: 6113d226147ed6792b907a3ef253741209049cce5e48a0e420828ee4e9679985
sha512: c0404b811314b3c9f931f565924646eb41b22980991374b7323ad6d87d3ce7b6904969601d58414a2b1a1edf83c1ad0ad95a7aa58c1972846a88c3847d5f39cd
ssdeep: 3072:I4PrXcuQuvpzm4bkiaMQgAlSCNub97vwhGn7:lDRv1m4bnQgISCNuNvwho7
type: Composite Document File V2 Document, Little Endian, Os: Windows, Version 6.2, Code page: 1252, Title: Occaecati., Author: Lucas Dupuy, Template: Normal.dotm, Revision Number: 1, Name of Creating Application: Microsoft Office Word, Create Time/Date: Wed Aug 19 15:57:00 2020, Last Saved Time/Date: Wed Aug 19 15:57:00 2020, Number of Pages: 1, Number of Words: 4, Number of Characters: 24, Security: 0

Version Info:

0: [No Data]

GenScript.JVD also known as:

Elasticmalicious (high confidence)
DrWebExploit.Siggen2.24465
MicroWorld-eScanW97m.Downloader.IXT
FireEyeW97m.Downloader.IXT
CAT-QuickHealOLE.Emotet.38786
McAfeeW97M/Downloader.ddv
VIPRETrojan-Downloader.W97M.Agent.jc (v)
InvinceaTroj/DocDl-AAGM
CyrenW97M/Downldr.IE.gen!Eldorado
SymantecW97M.Downloader
TrendMicro-HouseCallTrojan.W97M.POWLOAD.THHBOBO
ClamAVDoc.Downloader.Generic-9398353-0
KasperskyHEUR:Trojan.MSOffice.SAgent.gen
BitDefenderW97m.Downloader.IXT
NANO-AntivirusTrojan.Script.Downloader.htfcpy
ViRobotDOC.Z.Agent.200567
AegisLabTrojan.MSWord.Generic.4!c
TencentHeur.Macro.Generic.h.c80e7cf3
Ad-AwareW97m.Downloader.IXT
Comodo.UnclassifiedMalware@0
F-SecureMalware.W97M/Agent.3758011
TrendMicroTrojan.W97M.POWLOAD.THHBOBO
SophosTroj/DocDl-AAGM
AviraW97M/Agent.3758011
MAXmalware (ai score=100)
Antiy-AVLTrojan[Downloader]/MSOffice.Agent
MicrosoftTrojanDownloader:O97M/Emotet.CSK!MTB
ArcabitW97m.Downloader.IXT
ZoneAlarmHEUR:Trojan.MSOffice.SAgent.gen
GDataW97m.Downloader.IXT
CynetMalicious (score: 85)
AhnLab-V3Downloader/MSOffice.Generic
VBA32TrojanDownloader.O97M.Emotet.CSK
ALYacTrojan.Downloader.DOC.Gen
ZonerProbably Heur.W97Obfuscated
ESET-NOD32GenScript.JVD
RisingTrojan.Downloader!1.CAAF (CLASSIC)
IkarusTrojan-Downloader.VBA.Emotet
FortinetVBA/Agent.GC!tr.dldr
AVGSNH:Script [Dropper]
PandaW97M/Downloader.DDE
Qihoo-360virus.office.qexvmc.1070

How to remove GenScript.JVD?

GenScript.JVD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment