Malware

Mal/Generic-R + Troj/Agent-BFBH malicious file

Malware Removal

The Mal/Generic-R + Troj/Agent-BFBH is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-R + Troj/Agent-BFBH virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Anomalous binary characteristics

Related domains:

updt-servc-app2.com

How to determine Mal/Generic-R + Troj/Agent-BFBH?


File Info:

crc32: 0D76EF38
md5: ff9a0f3bd4d87ee1eac397836859e4fa
name: FF9A0F3BD4D87EE1EAC397836859E4FA.mlw
sha1: 3db53b56b55b8e69cbfefb260931b62f6b2c42b4
sha256: 24e8f4917bb3cf7d6fd91fc1c95e978ea75a0e6da9033911e48b0fda94be62af
sha512: d910b24a0331ed5047da8d4ca692cb9aad943bb75ef906c34fe53ea977b6341bdeadee4fa6c07eef021c918e7a4849c3c1304e3d6f21d43762d22cce81d3f5d5
ssdeep: 3072:3tchhP3fqvShupTP20Y/MauYgzZPME056BZ7dOln5IzbSF:3UhP3f7uBvT7JddG5IaF
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Microsoft Corporation. All rights reserved.
InternalName: rundll32.exe
FileVersion: 1.2.0.5
CompanyName: Microsoft
ProductName: Windows
ProductVersion: 6.2.10.0
FileDescription: Windows Host Process
OriginalFilename: rundll32.exe
Translation: 0x0409 0x04b0

Mal/Generic-R + Troj/Agent-BFBH also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053c4c91 )
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
CAT-QuickHealTrojan.ApostRI.S10870953
ALYacTrojan.StrongPity.gen
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.13733
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Gandcrab.07b9a74c
K7GWTrojan ( 0053c4c91 )
Cybereasonmalicious.bd4d87
CyrenW32/Filecoder.V.gen!Eldorado
SymantecTrojan Horse
ESET-NOD32a variant of Win32/Filecoder.NSD
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
ClamAVWin.Trojan.StrongPity3-8196499-3
KasperskyHEUR:Trojan.Win32.APosT.vho
BitDefenderTrojan.StrongPity.GenericKD.33940429
NANO-AntivirusTrojan.Win32.APosT.incupi
MicroWorld-eScanTrojan.StrongPity.GenericKD.33940429
TencentMalware.Win32.Gencirc.10b86352
Ad-AwareATI:StrongPity.Exfil.5D69B91C
SophosMal/Generic-R + Troj/Agent-BFBH
ComodoMalware@#1nwp2v0yrehm0
BitDefenderThetaGen:NN.ZexaF.34738.iy0@a89vKKpi
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.ch
FireEyeGeneric.mg.ff9a0f3bd4d87ee1
EmsisoftTrojan.StrongPity.GenericKD.33940429 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.APosT.aks
WebrootW32.Ransom.Gen
AviraHEUR/AGEN.1117670
Antiy-AVLTrojan/Generic.ASMalwS.30AB1E8
MicrosoftRansom:Win32/Gandcrab
AegisLabTrojan.Win32.APosT.4!c
GDataTrojan.StrongPity.GenericKD.33940429
AhnLab-V3Malware/Win32.Generic.C3655015
McAfeeStrongPity!FF9A0F3BD4D8
MAXmalware (ai score=80)
VBA32suspected of Trojan.Downloader.gen
MalwarebytesTrojan.FakeMS
PandaTrj/GdSda.A
RisingTrojan.Generic@ML.100 (RDML:T5FJYbg4Ogh6AG9/Bc4jmg)
YandexTrojan.Filecoder!BiX15iLfi4I
IkarusTrojan-Ransom.FileCrypter
FortinetW32/Filecoder.NSD!tr
AVGWin32:RansomX-gen [Ransom]
Paloaltogeneric.ml

How to remove Mal/Generic-R + Troj/Agent-BFBH?

Mal/Generic-R + Troj/Agent-BFBH removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment