Malware

GenScript.JVO information

Malware Removal

The GenScript.JVO is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What GenScript.JVO virus can do?

  • The office file contains 9 macros
  • The office file contains a macro with auto execution
  • The office file contains anomalous features
  • A potential decoy document was displayed to the user
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • The office file contains a macro with potential indicators of compromise
  • The office file contains a macro with suspicious strings

How to determine GenScript.JVO?


File Info:

crc32: 29E23E4E
md5: c5926d8cdf323673c35b1ef59ada8fe1
name: upload_file
sha1: 8ab08b0a0e8bcfa091baebe76cef6e512bca75d4
sha256: 5e7515525e8860e298761a8ffb33f65160d9debd2b3c698c8ab7a1a462c76a69
sha512: 7bedd579dcaa92c79c8115be4ce9c5fce45e1f9d8eec64615f64967a3a422abebbd2acc568adb6751efa3e19300b05c5864658698359a1651164cfd7c18dff3b
ssdeep: 12288:lo2aJZEy3/AdZOdvfXeGlbU6dRE1eK/KaV+JvT7HeVsi6UqttsQfEZpGLvbaQ5Cr:1ajEa/AsfXeGlbldRpKCn77+nFDn3gzS
type: Composite Document File V2 Document, Little Endian, Os: Windows, Version 6.3, Code page: 1252, Last Saved By: Administrator, Name of Creating Application: Microsoft Excel, Create Time/Date: Mon Jun 22 11:41:03 2020, Last Saved Time/Date: Thu Aug 20 14:49:17 2020, Security: 0

Version Info:

0: [No Data]

GenScript.JVO also known as:

Elasticmalicious (high confidence)
DrWebTrojan.DownLoader34.18684
MicroWorld-eScanTrojan.GenericKD.34395482
FireEyeTrojan.GenericKD.34395482
McAfeeW97M/Downloader.dds
SangforMalware
TrendMicroTROJ_FRS.0NA103HK20
BitDefenderThetaGen:NN.ZedlaF.34216.ty5@aSY3W2ci
CyrenPNG/Trojan.USCY-8
SymantecTrojan.Gen.NPE
TrendMicro-HouseCallTROJ_FRS.0NA103HK20
AvastOther:Malware-gen [Trj]
ClamAVWin.Dropper.Hideproc-6663113-0
KasperskyHEUR:Trojan.Script.Generic
BitDefenderTrojan.GenericKD.34395482
NANO-AntivirusTrojan.Win32.Redcap.hsqoli
ViRobotDOC.Z.Agent.960412
TencentWin32.Trojan.Generic.Syri
Ad-AwareTrojan.GenericKD.34395482
TACHYONSuspicious/W97.NS.Gen
Comodo.UnclassifiedMalware@0
F-SecureHeuristic.HEUR/Macro.Downloader.MRUZ.Gen
InvinceaTroj/DocDl-AAGO
SophosTroj/DocDl-AAGO
IkarusTrojan.Office.Doc
AviraHEUR/Macro.Downloader.MRUZ.Gen
Antiy-AVLTrojan/Generic.Generic
MicrosoftTrojanDropper:O97M/GraceWire.ARJ!MTB
ArcabitTrojan.Generic.D20CD55A
ZoneAlarmHEUR:Trojan.Script.Generic
GDataTrojan.GenericKD.34395482
CynetMalicious (score: 85)
VBA32Trojan.Downloader
ALYacTrojan.GenericKD.34395482
MAXmalware (ai score=88)
ZonerProbably Heur.W97Call
ESET-NOD32GenScript.JVO
RisingDropper.StealthLoader/VBA!1.C75E (CLASSIC)
SentinelOneDFI – Malicious OLE
FortinetW32/Dropper.GIF!tr
AVGOther:Malware-gen [Trj]
Qihoo-360Generic/Trojan.Script.ed4

How to remove GenScript.JVO?

GenScript.JVO removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment