Malware

About “Generic.RozenaA.CF218D3C” infection

Malware Removal

The Generic.RozenaA.CF218D3C is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.RozenaA.CF218D3C virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Executed a process and injected code into it, probably while unpacking
  • Anomalous binary characteristics

How to determine Generic.RozenaA.CF218D3C?


File Info:

crc32: EF97A2B9
md5: 3e641a470b8fbc6f94fb0b1b658c74c8
name: 3E641A470B8FBC6F94FB0B1B658C74C8.mlw
sha1: 2b84655a73eee02b534532972700a9353feae202
sha256: 665a660b67a7bff7401d0aff2e77b23c1fa03479432a87c8d26c20f5b6fd0680
sha512: 2c702b38e5c511b43e7aa5450b9d48e044663204871c56c9f5f083210e5a7a775f01ef2d489a27bbe231460d7e6e986ceca861ae304a49c9177f648be8fc93a9
ssdeep: 48:qFGFajFK3zSIe7h/TMXeuPhKrrJ0V7MRxem995kdvE+2UGfpsRn+HCYJy:eGFajRJhVuPhcJ06em5gjGfpsoB
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.RozenaA.CF218D3C also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Inject1.41928
CynetMalicious (score: 100)
ALYacDeepScan:Generic.RozenaA.CF218D3C
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.702434
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 004b76a21 )
K7AntiVirusTrojan ( 004b76a21 )
BaiduWin32.Trojan.Kryptik.sv
CyrenW32/S-4213a17e!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Inject.NJV
APEXMalicious
AvastWin32:Hijack-GY [Trj]
ClamAVWin.Exploit.Call4_Dword_Xor-1
KasperskyHEUR:Backdoor.Win32.Generic
BitDefenderDeepScan:Generic.RozenaA.CF218D3C
ViRobotBackdoor.Win32.Agent.5120.M
MicroWorld-eScanDeepScan:Generic.RozenaA.CF218D3C
Ad-AwareDeepScan:Generic.RozenaA.CF218D3C
SophosML/PE-A + ATK/Veil-AA
ComodoTrojWare.Win32.Dorv.G@76w20b
BitDefenderThetaGen:NN.ZedlaF.34670.aq4@aSbiaim
TrendMicroTROJ_SWRORT.SMDSA
McAfee-GW-EditionTrojan-FHMQ!3E641A470B8F
FireEyeGeneric.mg.3e641a470b8fbc6f
EmsisoftDeepScan:Generic.RozenaA.CF218D3C (B)
SentinelOneStatic AI – Malicious PE
JiangminBackdoor.Generic.aahy
AviraTR/Hijacker.Gen
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/Meterpreter.A
ArcabitDeepScan:Generic.RozenaA.CF218D3C
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataWin32.Trojan.Kryptik.P266M7
Acronissuspicious
McAfeeTrojan-FHMQ!3E641A470B8F
MAXmalware (ai score=87)
VBA32Trojan.Inject
MalwarebytesTrojan.Downloader
PandaGeneric Suspicious
TrendMicro-HouseCallTROJ_SWRORT.SMDSA
RisingHackTool.Swrort!1.6477 (RDMK:cmRtazpJ+sYOLUnnlqnbBYeqI7n+)
YandexTrojan.DownLoader!/YiSk3bJ83Y
IkarusTrojan.Win32.Swrort
FortinetW32/Kryptik.DALA!tr
AVGWin32:Hijack-GY [Trj]
Paloaltogeneric.ml
Qihoo-360HEUR/QVM40.1.6367.Malware.Gen

How to remove Generic.RozenaA.CF218D3C?

Generic.RozenaA.CF218D3C removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment