Malware

Generic.Keylogger.2.D73EF5E8 (B) removal

Malware Removal

The Generic.Keylogger.2.D73EF5E8 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Keylogger.2.D73EF5E8 (B) virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
redirector.gvt1.com
r4—sn-4g5ednss.gvt1.com
update.googleapis.com

How to determine Generic.Keylogger.2.D73EF5E8 (B)?


File Info:

crc32: 2128EA90
md5: d5cb1a1c46c8b9b2c07e401ed27a05f2
name: 002.exe
sha1: 8b43b2b50532faf29a529d4957d43942c6db7190
sha256: cd71ae8329a17f9b4adbc60b67d4bf7f7caac8bf9a256a4dfad3e9a8222845a6
sha512: 855bcdc54641c64e77a9b7ab7df0a1a7f8847eea32c3fcc4913ec0e15a9506df95c74161747b5d2e4bcfee84de43d9f70cf1f75320b4c7058750093acd1cb703
ssdeep: 6144:2SuxNOug5MI3KBau3EO8iZrEXA2czL6mWzdoZtAznpGuGEwJvfJ0sjVC:3ux9g5F6U2WOWczLygAzN6fJ2
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Keylogger.2.D73EF5E8 (B) also known as:

DrWebTrojan.Rootkit.22030
MicroWorld-eScanDeepScan:Generic.Keylogger.2.D73EF5E8
FireEyeGeneric.mg.d5cb1a1c46c8b9b2
Qihoo-360Win32/Backdoor.d55
McAfeeGenericR-RFJ!D5CB1A1C46C8
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Generic.lbym
SangforMalware
K7AntiVirusTrojan ( 0055d4871 )
BitDefenderDeepScan:Generic.Keylogger.2.D73EF5E8
K7GWTrojan ( 0055d4871 )
Cybereasonmalicious.c46c8b
TrendMicroTROJ_GEN.R002C0DFA20
BitDefenderThetaAI:Packer.467134651F
CyrenW32/Farfli.BI.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:BackdoorX-gen [Trj]
ClamAVWin.Keylogger.Deepscan-7603977-0
GDataDeepScan:Generic.Keylogger.2.D73EF5E8
KasperskyHEUR:Backdoor.Win32.Generic
AlibabaBackdoor:Win32/Zegost.fc9a13ca
NANO-AntivirusTrojan.Win32.Farfli.getkjn
ViRobotTrojan.Win32.Z.Farfli.409600.P
RisingBackdoor.Zegost!8.177 (CLOUD)
Ad-AwareDeepScan:Generic.Keylogger.2.D73EF5E8
EmsisoftDeepScan:Generic.Keylogger.2.D73EF5E8 (B)
Comodo.UnclassifiedMalware@0
F-SecureTrojan.TR/Crypt.XPACK.Gen
ZillyaTrojan.Farfli.Win32.33439
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Backdoor.gc
Trapminesuspicious.low.ml.score
SentinelOneDFI – Suspicious PE
F-ProtW32/Farfli.BI.gen!Eldorado
JiangminBackdoor.Generic.bafy
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=81)
Antiy-AVLTrojan[Backdoor]/Win32.AGeneric
Endgamemalicious (high confidence)
ArcabitDeepScan:Generic.Keylogger.2.D73EF5E8
ZoneAlarmHEUR:Backdoor.Win32.Generic
MicrosoftBackdoor:Win32/Zegost.BW
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R333274
Acronissuspicious
VBA32Trojan.Vehidis
ALYacDeepScan:Generic.Keylogger.2.D73EF5E8
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/Farfli.CTT
TrendMicro-HouseCallTROJ_GEN.R002C0DFA20
TencentMalware.Win32.Gencirc.10b84df0
YandexTrojan.Vehidis!
IkarusPacked.Win32.Hrup
eGambitUnsafe.AI_Score_99%
FortinetW32/Generic.AP.319CC8!tr
AVGWin32:BackdoorX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_70% (W)
MaxSecureTrojan.Malware.7175197.susgen

How to remove Generic.Keylogger.2.D73EF5E8 (B)?

Generic.Keylogger.2.D73EF5E8 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment