Malware

Generic.Remcos.F98B0B7E (file analysis)

Malware Removal

The Generic.Remcos.F98B0B7E is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Remcos.F98B0B7E virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • A process attempted to delay the analysis task.
  • Sniffs keystrokes

Related domains:

z.whorecord.xyz
a.tomx.xyz
Officialsw.chickenkiller.com
official.ydns.eu
hurricane.ydns.eu

How to determine Generic.Remcos.F98B0B7E?


File Info:

crc32: 8265C70E
md5: 23623affe6ef20007d522336e1c0ac4a
name: 23623AFFE6EF20007D522336E1C0AC4A.mlw
sha1: 86c3804bf412b46d9750dd4170a457c45aa205fd
sha256: 44c6c52e9603abc8dc2461c1fcb15cd875063ac11024a10d0e16c0cdb5edee04
sha512: d752616dff783709b3413a68c079c1a9320c1f7e8503cbee6e2c6724e9bc8c2899ab04b4f923151d5bc3d8ea359421a1e9570cc025710ed2adf7eb22c47cab22
ssdeep: 12288:wYe6UWhaT5xnDdLv9rX+1jZJqxE/ZjEcyib:m6UWUT5xDN9IjZJsCZ3yg
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Remcos.F98B0B7E also known as:

K7AntiVirusTrojan ( 0053ba121 )
Elasticmalicious (high confidence)
DrWebTrojan.Siggen14.55704
CynetMalicious (score: 100)
ALYacDeepScan:Generic.Remcos.F98B0B7E
CylanceUnsafe
ZillyaTrojan.Generic.Win32.1460119
SangforTrojan.Win32.Save.a
K7GWTrojan ( 0053ba121 )
Cybereasonmalicious.fe6ef2
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Rescoms.B
APEXMalicious
AvastWin32:RATX-gen [Trj]
ClamAVWin.Trojan.Remcos-9753190-0
KasperskyUDS:Trojan.Win32.Generic
BitDefenderDeepScan:Generic.Remcos.F98B0B7E
MicroWorld-eScanDeepScan:Generic.Remcos.F98B0B7E
TencentMalware.Win32.Gencirc.10cec31d
Ad-AwareDeepScan:Generic.Remcos.F98B0B7E
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34126.CCW@ayH3r6ai
McAfee-GW-EditionBehavesLike.Win32.Dropper.gh
FireEyeGeneric.mg.23623affe6ef2000
EmsisoftDeepScan:Generic.Remcos.F98B0B7E (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.halxu
AviraHEUR/AGEN.1141389
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.3458D2D
MicrosoftBackdoor:Win32/Remcos.GA!MTB
GridinsoftBackdoor.Win32.Remcos.oa!s1
ArcabitDeepScan:Generic.Remcos.F98B0B7E
GDataWin32.Malware.Bucaspys.B
AhnLab-V3Trojan/Win.RemcosRAT.R418128
McAfeeTrojan-FTRG!23623AFFE6EF
MAXmalware (ai score=88)
VBA32BScope.Backdoor.Remcos
MalwarebytesBackdoor.Remcos
PandaTrj/GdSda.A
RisingBackdoor.Remcos!1.B6A7 (CLASSIC)
YandexTrojan.Agent!wQ4Wbnu/ODE
IkarusTrojan.Win32.Rescoms
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Rescoms.M!tr
AVGWin32:RATX-gen [Trj]

How to remove Generic.Remcos.F98B0B7E?

Generic.Remcos.F98B0B7E removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment