Malware

How to remove “Downloader.Win32.Fuling”?

Malware Removal

The Downloader.Win32.Fuling is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Downloader.Win32.Fuling virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Attempts to modify proxy settings

Related domains:

www.fulingmall.com

How to determine Downloader.Win32.Fuling?


File Info:

crc32: 28080821
md5: a982745c90e37d9286938f7ae50afa0d
name: A982745C90E37D9286938F7AE50AFA0D.mlw
sha1: 47f24a63c4a39907264f0924d7b1b6f6ab9ca524
sha256: 64263b1d0c98fdc5212faafcdd1f723691a4b0013bbb33d59d8b2f8625a71b65
sha512: 5a2ec55966783da0c47656a12f3ff6920f449349b130f83ef27e895e97c61ba953db3005692aa16757402c599afcf0e34c280913588b2552e11be09f7cb2393e
ssdeep: 6144:bG77CVFOCSto935g5qWF5poEG53wYI41IMpt/DN+34+dnLGMOS8QrFrV0Fr2VKbs:bG77Y20C5qWFToEwfrh+34EGMRbkhS
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x4f5cx8005x7248x6743x6240x6709 x8bf7x5c0ax91cdx5e76x4f7fx7528x6b63x7248
FileVersion: 1.0.0.0
Comments: Microsoft Corporation
ProductName: Microsoft Corporation
ProductVersion: 1.0.0.0
FileDescription: Microsoft Corporation
Translation: 0x0804 0x04b0

Downloader.Win32.Fuling also known as:

Elasticmalicious (high confidence)
FireEyeGeneric.mg.a982745c90e37d92
CAT-QuickHealHacktool.Flystudio.22261
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforVirus_Suspicious.Win32.Sality.ae
CrowdStrikewin/malicious_confidence_90% (W)
K7GWTrojan ( 005246d51 )
K7AntiVirusTrojan ( 005246d51 )
CyrenW32/Agent.EW.gen!Eldorado
SymantecSMG.Heur!gen
APEXMalicious
AvastWin32:Dropper-gen [Drp]
Kasperskynot-a-virus:HEUR:Downloader.Win32.Fuling.gen
NANO-AntivirusTrojan.Win32.Fuling.hvhknn
RisingTrojan.Tiggre!8.ED98 (RDMK:cmRtazr6o+DpCcqzwL5/hzAy4eBf)
ComodoWorm.Win32.Dropper.RA@1qraug
F-SecureTrojan:W32/DelfInject.R
ZillyaTrojan.Badur.Win32.14982
TrendMicroHT_ZYX_FD0501D0.UVPM
McAfee-GW-EditionBehavesLike.Win32.Generic.tm
SophosGeneric ML PUA (PUA)
IkarusTrojan-Dropper.Agent
JiangminDownloader.Fuling.a
AviraTR/Drop.Agent.ctcis
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Win32.TSGeneric
MicrosoftTrojan:Script/Phonzy.A!ml
ZoneAlarmnot-a-virus:HEUR:Downloader.Win32.Fuling.gen
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Downloader.R154047
Acronissuspicious
McAfeeGenericR-CWM!A982745C90E3
TACHYONTrojan/W32.Badur.2056192
VBA32Trojan.Badur
MalwarebytesRiskWare.Packed.FlyStudio
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
TrendMicro-HouseCallHT_ZYX_FD0501D0.UVPM
YandexTrojan.GenAsa!vxt8KnOmVBE
SentinelOneStatic AI – Malicious PE
FortinetW32/Generic.AC.19676!tr
BitDefenderThetaGen:NN.ZexaF.34590.9r0@auoD7Jib
AVGWin32:Dropper-gen [Drp]
Cybereasonmalicious.3c4a39
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Dropper.c9f

How to remove Downloader.Win32.Fuling?

Downloader.Win32.Fuling removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment