Malware

FochiBlz.7924 information

Malware Removal

The FochiBlz.7924 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What FochiBlz.7924 virus can do?

  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine FochiBlz.7924?


File Info:

crc32: 527FD7A8
md5: 5125979110847d35a338caac6bff2aa8
name: 5125979110847D35A338CAAC6BFF2AA8.mlw
sha1: 218651ac5b575c3f9642c2e9a5928aa22fab8483
sha256: 078403b4e89ff06d2fe2ed7e75428a381f83ffb708dbd01b0220767498947f0c
sha512: a19ceab78ee6d84ee1b8d42118e428f4f2e4b4500081fe8e1c38beed5386a692149113af01577e8f7b95034f2f2610be097385313bcb87d409470b78010bb369
ssdeep: 192:s3YNRmUn8kfk+azbJzThQzXEQUJpnwHWZKoAp2h2QS4jeOKEogzc:s3YNRmUn8k8P3hGEQaGHWZNKHuz
type: PE32 executable (DLL) (console) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

FochiBlz.7924 also known as:

Elasticmalicious (high confidence)
DrWebTrojan.Siggen11.56061
MicroWorld-eScanGen:Variant.FochiBlz.7924
CAT-QuickHealTrojan.Agent
McAfeeInjector-FEY.c!512597911084
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Agent.4!c
SangforMalware
K7AntiVirusRiskware ( 0049f6ae1 )
BitDefenderGen:Variant.FochiBlz.7924
K7GWRiskware ( 0049f6ae1 )
CrowdStrikewin/malicious_confidence_100% (W)
ArcabitTrojan.FochiBlz.D1EF4
BitDefenderThetaGen:NN.ZedlaF.34700.aK4@aexWLDc
CyrenW32/FochiBlz.OAJX-1842
SymantecBackdoor.Cobalt
TrendMicro-HouseCallTrojan.Win32.MALREP.THLABBO
AvastWin32:Malware-gen
ClamAVWin.Countermeasure.LoaderWinGeneric-9804846-1
KasperskyTrojan.Win32.Agent.xadrqc
AlibabaTrojan:Win32/Countermeasure.345589e7
NANO-AntivirusTrojan.Win32.Ursu.fkmgir
RisingTrojan.Agent!8.B1E (LIGHT:5125979110847D35A338CAAC6BFF2AA8)
Ad-AwareGen:Variant.FochiBlz.7924
SophosMal/Generic-R + ATK/Cobalt-W
ComodoMalware@#1f2a9qj7xsdux
F-SecureHeuristic.HEUR/AGEN.1101857
ZillyaTrojan.Agent.Win32.1026043
TrendMicroTrojan.Win32.MALREP.THLABBO
McAfee-GW-EditionInjector-FEY.c!512597911084
FireEyeGeneric.mg.5125979110847d35
EmsisoftGen:Variant.FochiBlz.7924 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Malware.Gen
AviraHEUR/AGEN.1101857
Antiy-AVLTrojan/Win32.Agent
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Tiggre!rfn
ZoneAlarmTrojan.Win32.Agent.xadrqc
GDataGen:Variant.FochiBlz.7924
CynetMalicious (score: 100)
AhnLab-V3Malware/Gen.Generic.C1031230
VBA32BScope.Trojan.Agent
ALYacTrojan.Agent.Bluteal
MAXmalware (ai score=100)
MalwarebytesTrojan.CobaltStrike.Feye
PandaTrj/Genetic.gen
ESET-NOD32Win32/Agent.AACK
TencentTrojan.Win32.Cobalt.a
YandexTrojan.Agent!tI+UxQcf6ag
IkarusTrojan.Win32.Agent
FortinetW32/Agent.AACK!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.098

How to remove FochiBlz.7924?

FochiBlz.7924 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment