Virus

FunLove.Virus.FileInfector.DDS removal guide

Malware Removal

The FunLove.Virus.FileInfector.DDS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What FunLove.Virus.FileInfector.DDS virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Creates a copy of itself

How to determine FunLove.Virus.FileInfector.DDS?


File Info:

name: 48FBF5897DF01E525A83.mlw
path: /opt/CAPEv2/storage/binaries/869c7a6e3df6ef6fdb426705b725feb4234c0b28ed2e8f7a95adef654be08a95
crc32: AAAA7018
md5: 48fbf5897df01e525a83dd8e051911d8
sha1: 9314097415e5b67ab67210777fb4542b0d17810e
sha256: 869c7a6e3df6ef6fdb426705b725feb4234c0b28ed2e8f7a95adef654be08a95
sha512: e6a6ef161ddbff0f4c55ba34869941d5ee0104ddffc4b264c8b5accfabffc18bb1b292cdfe64021cc602a552e54b3cf6d98268ad5cae3b3ed2bb1725d5121bed
ssdeep: 24576:FfGfUif4GfPNfRtfs0MfscsfNFRl7Ja9tOJf51HUR917/E7/7CTAChGOZqYAMy0j:paPPDLl7DJsLFA/kAAA3fNhYzmY
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12275AE2115F98216E1F6AB30DC7A2EDE36797C25AF31CCEF61A478AD04325D1A931B13
sha3_384: cc5affe6988f2319476a26d57f40ff6247f9efdc7843fbd43d223f82e38ae3478171a6e05416bef8da54544549fc2155
ep_bytes: 558bec6aff6840f5460068e89e460064
timestamp: 2020-05-20 05:56:57

Version Info:

0: [No Data]

FunLove.Virus.FileInfector.DDS also known as:

BkavW32.AIDetectNet.01
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.305076
FireEyeGeneric.mg.48fbf5897df01e52
McAfeeGenericRXKQ-PL!48FBF5897DF0
MalwarebytesFunLove.Virus.FileInfector.DDS
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 0059551b1 )
K7GWTrojan ( 0059551b1 )
CrowdStrikewin/malicious_confidence_100% (D)
ArcabitTrojan.Zusy.D4A7B4
CyrenW32/S-426c33ab!Eldorado
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Kryptik.HHUB
APEXMalicious
ClamAVWin.Packed.Adrozek-9811562-0
KasperskyHEUR:Trojan.Win32.Ekstak.vho
BitDefenderGen:Variant.Zusy.305076
SUPERAntiSpywareTrojan.Agent/Gen-Ekstak
AvastWin32:AdwareX-gen [Adw]
SophosTroj/Agent-BEQV
DrWebTrojan.Siggen9.22670
VIPREGen:Variant.Zusy.305076
McAfee-GW-EditionBehavesLike.Win32.Generic.th
Trapminemalicious.moderate.ml.score
EmsisoftGen:Variant.Zusy.305076 (B)
SentinelOneStatic AI – Malicious PE
GoogleDetected
AviraTR/AD.Tewgol.gixuc
Antiy-AVLTrojan/Win32.Ekstak
MicrosoftBrowserModifier:Win32/Adrozek
GDataWin32.Trojan.Kryptik.FBZBKT
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.RL_Ekstak.R357721
Acronissuspicious
ALYacGen:Variant.Zusy.305076
MAXmalware (ai score=88)
VBA32BScope.Trojan.Wacatac
Cylanceunsafe
RisingTrojan.Kryptik!1.AA23 (CLASSIC)
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/CoinMiner.GYQC!tr
AVGWin32:AdwareX-gen [Adw]
Cybereasonmalicious.97df01
PandaTrj/GdSda.A

How to remove FunLove.Virus.FileInfector.DDS?

FunLove.Virus.FileInfector.DDS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment