Malware

How to remove “Generic.EmotetU.F5A13CB2”?

Malware Removal

The Generic.EmotetU.F5A13CB2 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.EmotetU.F5A13CB2 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself

How to determine Generic.EmotetU.F5A13CB2?


File Info:

crc32: A31F092A
md5: 2edc04c6afae515f6806074baf818043
name: lookup.hlp
sha1: 34de678af68338084b88749b5afbe07d7e3c1026
sha256: b4921036575c053f51f7df9a0df95b76bbb69ab2d85b52f312d358983ef14a36
sha512: c2a361d27a91a702b2afb337f2176b382e565bcb584558cb19790c0984efe6c8b1cffacbc56bb2ce89d3088d64cead9d465d58bdb9acbfb3369c730595c425c8
ssdeep: 12288:JPgdt9CINa8NTbh/2kp165CAVCEnDHx8B5vHbT:JP49CINa8NTbdCCcRWfbT
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2008 Hans Dietrich
FileVersion: 1, 0, 0, 1
ProductName: XIconTest Application
E-mail: hdietrich@gmail.com
ProductVersion: 1, 0, 0, 1
FileDescription: XIconTest MFC Application
Article: www.codeproject.com
OriginalFilename: XIconTest.exe
Translation: 0x0409 0x04b0

Generic.EmotetU.F5A13CB2 also known as:

MicroWorld-eScanDeepScan:Generic.EmotetU.F5A13CB2
FireEyeDeepScan:Generic.EmotetU.F5A13CB2
CAT-QuickHealTrojan.Trickster
McAfeeTrojan-FRTB!2EDC04C6AFAE
ZillyaTrojan.Kryptik.Win32.1898709
SangforMalware
K7AntiVirusTrojan ( 0055e3cb1 )
BitDefenderDeepScan:Generic.EmotetU.F5A13CB2
K7GWTrojan ( 0055e3cb1 )
CrowdStrikewin/malicious_confidence_100% (W)
ArcabitDeepScan:Generic.EmotetU.F5A13CB2
CyrenW32/Trickbot.CE.gen!Eldorado
ESET-NOD32a variant of Win32/Kryptik.GZXS
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan-Banker.Win32.Trickster.hvo
AlibabaTrojanBanker:Win32/Trickster.418f6e04
RisingTrojan.Kryptik!1.C160 (CLASSIC)
Ad-AwareDeepScan:Generic.EmotetU.F5A13CB2
SophosMal/Generic-S
ComodoMalware@#2m6abeh7y3o3y
F-SecureTrojan.TR/Crypt.Agent.upfub
DrWebTrojan.Inject3.32386
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R01FC0DA820
McAfee-GW-EditionBehavesLike.Win32.Dropper.hh
Trapminemalicious.moderate.ml.score
EmsisoftTrojan.Emotet (A)
IkarusTrojan.Win32.Crypt
F-ProtW32/Trickbot.CE.gen!Eldorado
WebrootW32.Trojan.Emotet
AviraTR/Crypt.Agent.upfub
FortinetW32/TrickBot.CM!tr
Endgamemalicious (high confidence)
MicrosoftTrojan:Win32/TrickBot.ARJ!MTB
ZoneAlarmTrojan-Banker.Win32.Trickster.hvo
AhnLab-V3Malware/Win32.Generic.C3862695
ALYacTrojan.Trickster.Gen
MAXmalware (ai score=81)
VBA32BScope.TrojanBanker.Trickster
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R01FC0DA820
TencentWin32.Trojan-banker.Trickster.Hwdo
GDataDeepScan:Generic.EmotetU.F5A13CB2
AVGWin32:MalwareX-gen [Trj]
AvastWin32:MalwareX-gen [Trj]
Qihoo-360Win32/Trojan.8a2

How to remove Generic.EmotetU.F5A13CB2?

Generic.EmotetU.F5A13CB2 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment