Malware

Generic.EmotetAC.AC2870A2 removal tips

Malware Removal

The Generic.EmotetAC.AC2870A2 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.EmotetAC.AC2870A2 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Mimics the system’s user agent string for its own requests
  • Expresses interest in specific running processes
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

How to determine Generic.EmotetAC.AC2870A2?


File Info:

crc32: 90C08903
md5: dd55b1febd157f774340ae50f1967152
name: DD55B1FEBD157F774340AE50F1967152.mlw
sha1: b8263b70b61fd4a38e55e3d2dae48899cfa2fafc
sha256: 38913ac5be6c99a6bd2b91c1b6bb4c1b1513bb3a71cb783211c67e6eda6e2c4e
sha512: c0915d68bb60c2d795c1daf2e74b1c70a9065744f3d3ea5e782fa8c0bea587c78e3f9f3ab783c75f3ae95dc789d68514b8c8c23c1e010f551e898b94f1472eac
ssdeep: 12288:MmsuI5oo/1n3Hiq9T/IZBAmHGwVI/g1fO:R+2U39T/I7HGwVI/a
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2002
InternalName: Formula
FileVersion: 1, 0, 0, 4
CompanyName:
LegalTrademarks:
ProductName: Anwendung Formula
ProductVersion: 1, 0, 0, 4
FileDescription: MFC-Anwendung Formula
OriginalFilename: Formula.EXE
Translation: 0x0407 0x04b0

Generic.EmotetAC.AC2870A2 also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanDeepScan:Generic.EmotetAC.AC2870A2
FireEyeDeepScan:Generic.EmotetAC.AC2870A2
CAT-QuickHealTrojan.MultiRI.S16483654
McAfeeEmotet-FSF!DD55B1FEBD15
CylanceUnsafe
K7AntiVirusTrojan ( 0057169c1 )
BitDefenderDeepScan:Generic.EmotetAC.AC2870A2
K7GWTrojan ( 0057169c1 )
TrendMicroTrojanSpy.Win32.EMOTET.SMD4.hp
CyrenW32/Emotet.AVJ.gen!Eldorado
SymantecPacked.Generic.554
APEXMalicious
ClamAVWin.Trojan.Generic-9780587-0
KasperskyHEUR:Trojan.Win32.Zenpak.pef
RisingTrojan.Emotet!1.CDA9 (CLASSIC)
Ad-AwareDeepScan:Generic.EmotetAC.AC2870A2
SophosTroj/Emotet-CRM
DrWebTrojan.DownLoader35.21252
InvinceaTroj/Emotet-CRM
McAfee-GW-EditionEmotet-FSF!DD55B1FEBD15
MaxSecureWin.MxResIcn.Heur.Gen
EmsisoftDeepScan:Generic.EmotetAC.AC2870A2 (B)
JiangminTrojan.Zenpak.dyf
MAXmalware (ai score=80)
MicrosoftTrojan:Win32/EmotetCrypt.PEF!MTB
ArcabitDeepScan:Generic.EmotetAC.AC2870A2
ZoneAlarmHEUR:Trojan.Win32.Zenpak.pef
GDataDeepScan:Generic.EmotetAC.AC2870A2
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R353491
Acronissuspicious
VBA32BScope.Malware-Cryptor.Emotet
ALYacDeepScan:Generic.EmotetAC.AC2870A2
MalwarebytesTrojan.MalPack.TRE
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/Kryptik.HGWJ
TrendMicro-HouseCallTrojanSpy.Win32.EMOTET.SMD4.hp
TencentMalware.Win32.Gencirc.11b10018
IkarusWin32.Outbreak
FortinetW32/Kryptik.HEOE!tr
AVGWin32:BankerX-gen [Trj]
AvastWin32:BankerX-gen [Trj]

How to remove Generic.EmotetAC.AC2870A2?

Generic.EmotetAC.AC2870A2 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment