Malware

Generic.KillMBR.A.EA885338 removal instruction

Malware Removal

The Generic.KillMBR.A.EA885338 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.KillMBR.A.EA885338 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • CAPE detected the FatalRAT malware family
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.KillMBR.A.EA885338?


File Info:

name: AB7D836418EBA6D6FE13.mlw
path: /opt/CAPEv2/storage/binaries/5905f3df4ecaa755007297122337daf72f91c8b6b302e23ec1ea685f28cdaa60
crc32: 4FEB881B
md5: ab7d836418eba6d6fe1361a0fa2d5fe9
sha1: f06a883211c35eff04dbb7a514dfa894f18930df
sha256: 5905f3df4ecaa755007297122337daf72f91c8b6b302e23ec1ea685f28cdaa60
sha512: eaa566c0107e43acce58230382b903dde21b59b5430ad8d332bc5e5aea52658168a97c0b6339e576a2c815df39707883d07d7e02c70420bc226c8359d8c3ecfc
ssdeep: 1536:Vua+BTv3tIO8MtM+/6jRVGIk1MgHjsPGYYwOda2CqqZOIgQJb0lfjtO+vbWL8xJb:Vn+htWMtf+7GZYGVA2QJgi8xJLDoU
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BCE38D963CD64B7ADCF54234D94D8A38149E86B04658E4AF873DA4BAA3703C3B0E7717
sha3_384: 541db61247909c0180bf28c9c6e04838cd3c566ac6ee99b5da904751f70a8975d35ebfa1e6ddf3aef71e3d65d52ff477
ep_bytes: 558bec6aff68a0604000683c2b400064
timestamp: 2021-04-15 14:52:31

Version Info:

0: [No Data]

Generic.KillMBR.A.EA885338 also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanDeepScan:Generic.KillMBR.A.EA885338
SkyhighBehavesLike.Win32.Infected.ch
McAfeeGenericRXTR-OV!AB7D836418EB
MalwarebytesGeneric.Malware.AI.DDS
ZillyaBackdoor.Generic.Win32.31304
K7AntiVirusTrojan ( 005a74e61 )
BitDefenderDeepScan:Generic.KillMBR.A.EA885338
K7GWTrojan ( 005a74e61 )
Cybereasonmalicious.211c35
VirITTrojan.Win32.Genus.RTX
SymantecTrojan!im
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/FatalRAT.A
APEXMalicious
KasperskyHEUR:Backdoor.Win32.Generic
NANO-AntivirusTrojan.Win32.Farfli.itwbcp
RisingTrojan.Kryptik!1.AAD1 (CLASSIC)
TACHYONBackdoor/W32.Agent.143360.GG
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.MulDrop17.52527
VIPREDeepScan:Generic.KillMBR.A.EA885338
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.ab7d836418eba6d6
EmsisoftDeepScan:Generic.KillMBR.A.EA885338 (B)
IkarusTrojan.Win32.Farfli
JiangminBackdoor.Generic.ckgk
GoogleDetected
AviraTR/Dropper.Gen
VaristW32/Agent.EWL.gen!Eldorado
Antiy-AVLTrojan[Backdoor]/MSIL.Zegost
Kingsoftmalware.kb.a.999
MicrosoftBackdoor:MSIL/Zegost.GG!MTB
XcitiumTrojWare.Win32.Agent.PDSB@4q3i1w
ArcabitDeepScan:Generic.KillMBR.A.EADD825A
ZoneAlarmHEUR:Backdoor.Win32.Generic
GDataDeepScan:Generic.KillMBR.A.EA885338
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.LVbg.R553633
VBA32BScope.Backdoor.Farfli
ALYacDeepScan:Generic.KillMBR.A.EA885338
MAXmalware (ai score=80)
DeepInstinctMALICIOUS
Cylanceunsafe
TencentMalware.Win32.Gencirc.115c5c4f
YandexWorm.AutoRun!Nq5f4FOwmYc
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.1728101.susgen
FortinetW32/GenKryptik.BJAB!tr
BitDefenderThetaAI:Packer.000EBC581D
AVGWin32:GenMalicious-JHS [Trj]
AvastWin32:GenMalicious-JHS [Trj]
CrowdStrikewin/malicious_confidence_90% (D)

How to remove Generic.KillMBR.A.EA885338?

Generic.KillMBR.A.EA885338 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment