Malware

Should I remove “Mal/Generic-R + Troj/Dridex-AFC”?

Malware Removal

The Mal/Generic-R + Troj/Dridex-AFC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-R + Troj/Dridex-AFC virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (2 unique times)
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Performs some HTTP requests
  • Collects information about installed applications

How to determine Mal/Generic-R + Troj/Dridex-AFC?


File Info:

crc32: 1BD4956F
md5: f06571ad870a4c398bf61bd0cdb049b9
name: F06571AD870A4C398BF61BD0CDB049B9.mlw
sha1: 9f5ea8cbe467a88e9c36fd40867826f927dc62e8
sha256: a44becb6f8b4f8ebe74fbcd27c2da5e05af9eed2cacc281ba7412757a9041d83
sha512: 690daf198689273e541f992b7899ac47143cd6603aa2c6f7766b75e57e503266bd4539ae6f406baf5c6e730a4c9937f19a93459137d5f821dbdf912d7ba6ba9a
ssdeep: 12288:CieGWYv9l8BOdbZ5ECQVElFKxDvaqhRjALFY:Cu9OBOpZ5Vluvaq
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Want sail Corporation. All rights reserved
InternalName: Under rule
FileVersion: 8.2.3.984 Kingthrow
CompanyName: Want sail Corporation
ProductName: Want sailxae Book tailxae
Write: 3996
ProductVersion: 8.2.3.984
FileDescription: Want sail Book tail
OriginalFilename: cross.dll
Translation: 0x0409 0x04b0

Mal/Generic-R + Troj/Dridex-AFC also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.45816105
FireEyeGeneric.mg.f06571ad870a4c39
McAfeeGenericRXNU-NU!F06571AD870A
CylanceUnsafe
AegisLabTrojan.Multi.Generic.4!c
SangforTrojan.Win32.Cridex.gen
BitDefenderTrojan.GenericKD.45816105
K7GWTrojan ( 005669021 )
K7AntiVirusTrojan ( 005669021 )
BitDefenderThetaGen:NN.ZedlaF.34608.Ju8@auvAk5ei
CyrenW32/Kryptik.DDI.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32Win32/Dridex.DD
AvastWin32:Trojan-gen
KasperskyHEUR:Trojan-Downloader.Win32.Cridex.gen
AlibabaTrojanDownloader:Win32/Dridex.3f796a65
Ad-AwareTrojan.GenericKD.45816105
EmsisoftTrojan.Dridex (A)
ComodoMalware@#3p4kq5eo08620
F-SecureTrojan.TR/AD.Dridex.wjr
DrWebTrojan.Dridex.735
TrendMicroTrojan.Win32.DRIDEX.AA
McAfee-GW-EditionArtemis!Trojan
SophosMal/Generic-R + Troj/Dridex-AFC
AviraTR/AD.Dridex.wjr
MAXmalware (ai score=85)
Antiy-AVLTrojan[Downloader]/Win32.Cridex
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Dridex.NQ!MTB
ArcabitTrojan.Generic.D2BB1929
AhnLab-V3Malware/Win32.RL_Generic.R368796
ZoneAlarmHEUR:Trojan-Downloader.Win32.Cridex.gen
GDataTrojan.GenericKD.45816105
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.45816105
MalwarebytesTrojan.Dridex
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojan.Win32.DRIDEX.AA
TencentWin32.Trojan-downloader.Cridex.Eamn
IkarusTrojan.Win32.Dridex
FortinetW32/Dridex.DD!tr
WebrootW32.Trojan.Dridex
AVGWin32:Trojan-gen
Qihoo-360Win32/Trojan.Dridex.HgkASQAA

How to remove Mal/Generic-R + Troj/Dridex-AFC?

Mal/Generic-R + Troj/Dridex-AFC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment