Malware

Mal/Generic-R + Mal/FareitVB-AC removal tips

Malware Removal

The Mal/Generic-R + Mal/FareitVB-AC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-R + Mal/FareitVB-AC virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Mal/Generic-R + Mal/FareitVB-AC?


File Info:

crc32: FC209D9C
md5: 07ba89c0c4ec4246c56de23fd915dad2
name: 07BA89C0C4EC4246C56DE23FD915DAD2.mlw
sha1: 6c0d54fcb8aeeeaf65aa8f8ddc809455a9333cf1
sha256: 7b2fa24464fc816c21be4a7849f99eed1936a46ecd02fd2305ee61e9ac94799b
sha512: 4a27fe85df46e0bb5d6fcc84c065fe6e8c347d7749b36a46075e8b3a81f067a1793696c403249e8675b52066a8a82e83314976ccc9d366371e1b750c0a488afd
ssdeep: 384:KwcH/ceddYSf9XlVjuBMb8R6P10FMKZUf4mFeCvEABlayQo2HgHL4ilwNfb4dgu:KL/caKSf9XlUuSqf4mM4abfHSd7idXG
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: endemia
FileVersion: 1.00
CompanyName: Tegnst
Comments: INSTRU
ProductName: Prvetbefle
ProductVersion: 1.00
FileDescription: Lanais7
OriginalFilename: endemia.exe

Mal/Generic-R + Mal/FareitVB-AC also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 005628bd1 )
LionicTrojan.Win32.Vebzenpak.4!c
Elasticmalicious (high confidence)
DrWebTrojan.PackedENT.133
CynetMalicious (score: 99)
CAT-QuickHealTrojan.Vebzenpak
ALYacTrojan.Guloader.GenericKD.33763437
CylanceUnsafe
ZillyaTrojan.Androm.Win32.898
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Fareit.3b
K7GWTrojan ( 005628bd1 )
Cybereasonmalicious.0c4ec4
CyrenW32/Kryptik.BCI.gen!Eldorado
SymantecInfostealer
ESET-NOD32a variant of Win32/Injector.EKPP
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Packed.Generic-7591178-0
KasperskyHEUR:Trojan.Win32.Vebzenpak.vho
BitDefenderTrojan.Guloader.GenericKD.33763437
NANO-AntivirusTrojan.Win32.Androm.hbfoec
MicroWorld-eScanTrojan.Guloader.GenericKD.33763437
TencentWin32.Trojan.Inject.Auto
Ad-AwareTrojan.Guloader.GenericKD.33763437
SophosMal/Generic-R + Mal/FareitVB-AC
BitDefenderThetaGen:NN.ZevbaF.34170.dm0@aaKIVxpi
VIPRETrojan.Win32.Generic!BT
TrendMicroTrojanSpy.Win32.FAREIT.UHBAZCLIY
McAfee-GW-EditionBehavesLike.Win32.Fareit.pt
FireEyeGeneric.mg.07ba89c0c4ec4246
EmsisoftTrojan.Guloader.GenericKD.33763437 (B)
SentinelOneStatic AI – Suspicious PE
JiangminBackdoor.Androm.atsb
AviraHEUR/AGEN.1107771
eGambitUnsafe.AI_Score_86%
Antiy-AVLTrojan/Generic.ASMalwS.2FFED1D
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojanSpy:Win32/FormBook.AR!MTB
GDataTrojan.Guloader.GenericKD.33763437
AhnLab-V3Suspicious/Win.VBKrypt.X2058
McAfeeFareit-FRM!07BA89C0C4EC
MAXmalware (ai score=80)
VBA32BScope.Trojan.Wacatac
MalwarebytesTrojan.MalPack.VB
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojanSpy.Win32.FAREIT.UHBAZCLIY
RisingDownloader.Guloader!1.C586 (CLASSIC)
YandexTrojan.AvsArher.bTeQgn
IkarusTrojan.VB.Crypt
MaxSecureTrojan.Malware.74841891.susgen
FortinetW32/GuLoader.VHHQ!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Mal/Generic-R + Mal/FareitVB-AC?

Mal/Generic-R + Mal/FareitVB-AC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment