Malware

Generic.Rugo.1FAF2CFB malicious file

Malware Removal

The Generic.Rugo.1FAF2CFB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Rugo.1FAF2CFB virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Generic.Rugo.1FAF2CFB?


File Info:

crc32: 170AD20F
md5: de649daa8a421b402098581367c8e1cf
name: DE649DAA8A421B402098581367C8E1CF.mlw
sha1: ff9d09acea2a201d5a25b5aabf4212bdb77b9072
sha256: dc56701455682a91c38485fa58605070df6ea6d6bd76afe8f810e108fcd8cf06
sha512: 8b7b4d39cd19d99b0a7d7d7bf50d427ef32414b454a46642dffe53e477d7f3a912e639471ee45e9f10e16d2c71ba9ef34cdec6e299c9f35f7c61be967cba148b
ssdeep: 3072:wvHhqIPNNpfnywzLRXHE5616rJKxs1CnjU:wvHEIPNLfywpLCJwnA
type: PE32 executable (console) Intel 80386, for MS Windows, PECompact2 compressed

Version Info:

0: [No Data]

Generic.Rugo.1FAF2CFB also known as:

K7AntiVirusRiskware ( 000027db1 )
LionicTrojan.Win32.Kykymber.lmDX
Elasticmalicious (high confidence)
DrWebTrojan.Siggen1.64027
MicroWorld-eScanDeepScan:Generic.Rugo.1FAF2CFB
ALYacDeepScan:Generic.Rugo.1FAF2CFB
CylanceUnsafe
ZillyaTrojan.Qhost.Win32.5469
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
K7GWRiskware ( 000027db1 )
Cybereasonmalicious.a8a421
CyrenW32/SuspPack.DO.gen!Eldorado
SymantecBackdoor.Trojan
ESET-NOD32Win32/RiskWare.PEMalform.B
APEXMalicious
AvastWin32:Adware-gen [Adw]
KasperskyTrojan-Downloader.Win32.Adnur.wkw
BitDefenderDeepScan:Generic.Rugo.1FAF2CFB
NANO-AntivirusTrojan.Win32.Libie.bockss
TencentWin32.Trojan-downloader.Adnur.Wtxc
Ad-AwareDeepScan:Generic.Rugo.1FAF2CFB
SophosMal/Adload-C
ComodoTrojWare.Win32.Trojan.XPACK.Gen@2ho5ur
BitDefenderThetaGen:NN.ZexaF.34170.giZ@aqhFqtp
VIPRELooksLike.Win32.InfectedFile!A (v)
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
FireEyeGeneric.mg.de649daa8a421b40
EmsisoftDeepScan:Generic.Rugo.1FAF2CFB (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Qhost.bug
WebrootW32.Malware.Gen
AviraTR/Dropper.Gen
eGambitUnsafe.AI_Score_51%
Antiy-AVLTrojan/Generic.ASMalwS.1F4151
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitDeepScan:Generic.Rugo.1FAF2CFB
GDataDeepScan:Generic.Rugo.1FAF2CFB
AhnLab-V3Backdoor/Win32.CSon.R2580
McAfeeArtemis!DE649DAA8A42
MAXmalware (ai score=86)
VBA32Backdoor.Hupigon
MalwarebytesGeneric.Trojan.Injector.DDS
PandaTrj/Genetic.gen
RisingPacker.Win32.Crypt.eg (CLASSIC)
YandexTrojan.Qhost!aMb6GuWKrGc
IkarusTrojan-Proxy.Win32.Puma
FortinetW32/Onlinegames.ASE!tr
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Generic.Rugo.1FAF2CFB?

Generic.Rugo.1FAF2CFB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment